A vulnerability was found in evidentlyai Evidently up to 0.7.21 and classified as problematic. The affected element is an unknown function of the component Dataset Materialization Endpoint. Such manipulation of the argument filename leads to path traversal.

This vulnerability is referenced as CVE-2026-75111. It is possible to launch the attack remotely. No exploit is available.