High severityNVD Advisory· Published Aug 18, 2026· Updated Aug 18, 2026
CVE-2026-45532
CVE-2026-45532
Description
DataEase is an open source data visualization and analysis tool. Versions prior to 2.10.23 have a path traversal vulnerability. The root cause is that on Windows, the FILE_SEPARATOR is \, while the server only filters the / character during string truncation. The vulnerability has been fixed in v2.10.23. No known workarounds are available.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.