Vulnerabilities
Report: Ultimate Guide: CVE-2026-23485 - Blinko: Unauthorized Path Traversal File Enumeration - music-metadata
CVE ID :CVE-2026-23485 Published : March 23, 2026, 9:17 p.m. | 35 minutes ago Description :Blinko is an AI-powered card note-taking project. Prior to version 1.8.4, the filePath parameter accepts path traversal sequences, allowing enumeration of file existence on the server via different error responses. This issue has been patched in version 1.8.4. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...