A vulnerability marked as problematic has been reported in Rapid7 Velociraptor up to 0.77.1. This affects an unknown part of the component GUI. The manipulation leads to path traversal.
This vulnerability is listed as CVE-2026-18652. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.