Unrated severityNVD Advisory· Published Jul 9, 2026· Updated Jul 30, 2026
LibreBooking path traversal
CVE-2026-61343
Description
LibreBooking's email template editor save action passes the submitted template name directly into the destination file path, allowing a remote attacker with administrator credentials to write an arbitrary file outside the template directory and execute code. Fixed in 5.1.0.
Affected products
1- Range: <5.1.0
Patches
Vulnerability mechanics
References
5- github.com/LibreBooking/librebooking/commit/cb9b7ad9da0243bd105809f6a4a8a6b9147c71eamitrepatch
- github.com/LibreBooking/librebooking/pull/1456mitrepatch
- raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2026/va-26-190-01.jsonmitrethird-party-advisory
- github.com/LibreBooking/librebooking/releases/tag/v5.1.0mitrerelease-notes
- www.cve.org/CVERecordmitrevdb-entry
News mentions
0No linked articles in our index yet.