HarborGuard / CVE
Back to search
HIGHCVE-2026-1616Published Modified CNA redhat-cnalr

CVE-2026-1616: osim: Path Traversal via query parameters in Nginx configuration

The $uri$args concatenation in nginx configuration file present in Open Security Issue Management (OSIM) prior v2025.9.0 allows path traversal attacks via query parameters.

Metrics

CVSS v3.1
7.5
Severity
HIGH
Fixed in
v2025.9.0
Affected Products
1

Fix available

v2025.9.0
Affected packages
  • Red Hat / osim
    < v2025.9.0 (from 0)
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
References