Unrated severityNVD Advisory· Published Jul 8, 2026· Updated Jul 9, 2026
Copier: trust-prefix bypass via path traversal runs tasks unprompted
CVE-2026-53951
Description
Copier is a library and CLI app for rendering project templates. In versions 9.5.0 through 9.15.1, the trust setting's prefix match (copier/_settings.py) compares the template URL against a trusted prefix with a raw str.startswith and no path normalization, while the URL is normalized when the template is actually fetched (Path.resolve() for local paths; libcurl dot-segment removal for https). A template reference that textually starts with a trusted prefix but contains .. is therefore granted trust yet resolves to a different, attacker-controlled template, whose tasks / migrations / jinja_extensions then run without the --trust prompt — arbitrary command execution. Version 9.15.2 patches the issue.
Affected products
1- Range: 9.5.0 - 9.15.1
Patches
Vulnerability mechanics
References
2- github.com/copier-org/copier/releases/tag/v9.15.2mitrex_refsource_MISC
- github.com/copier-org/copier/security/advisories/GHSA-9gmc-jqmh-3rvmmitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.