Analysis and contextual insights are available on OpenCVE Cloud.
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Wed, 07 Oct 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 07 Oct 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A path traversal vulnerability exists in the unzip_http RemoteZipFile extract functionality of VisiData (version(s): dev (commit 38b21f78)). A specially crafted .zip file can lead to arbitrary file write. An attacker can provide a crafted URL to trigger this vulnerability. | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: talos
Published:
Updated: 2026-10-07T14:38:19.378Z
Reserved: 2026-04-29T13:34:59.615Z
Link: CVE-2026-41958
Updated: 2026-10-07T14:38:15.545Z
Status : Awaiting Analysis
Published: 2026-10-07T13:17:22.467
Modified: 2026-10-07T16:02:27.613
Link: CVE-2026-41958
No data.
OpenCVE Enrichment
Updated: 2026-10-07T15:00:07Z
-
CWE-22
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')