Path Traversal Vulnerability in Calibre E-book Manager by Kovid Goyal
CVE-2026-25635
8.6HIGH
What is CVE-2026-25635?
Calibre, a popular e-book management tool, contains a path traversal vulnerability in its CHM reader prior to version 9.2.0. This flaw allows malicious users to perform arbitrary file writes in locations where the user has write permissions. On Windows systems, this can facilitate Remote Code Execution by allowing an attacker to place a malicious payload in the Startup folder, which would execute on the user's next login. Users are urged to update to version 9.2.0 or later to mitigate this risk. For more details, please refer to the advisory and fix linked in the references.
Affected Version(s)
calibre < 9.2.0
