Zip Slip Vulnerability in Backup Restore Functionality of changedetection.io
CVE-2026-29065
8.8HIGH
What is CVE-2026-29065?
changedetection.io, a popular open-source web page change detection tool, is affected by a Zip Slip vulnerability in its backup restore feature. This security flaw allows attackers to exploit path traversal in uploaded ZIP archives, potentially leading to arbitrary file overwriting on the server. The issue has been resolved in version 0.54.4, emphasizing the importance of keeping software updated to prevent security breaches.
Affected Version(s)
changedetection.io < 0.54.4
