A vulnerability described as critical has been identified in QOS.CH Sarl Logback-classic up to 1.6.2. This affects an unknown function of the component FileAppender. The manipulation results in path traversal.

This vulnerability is cataloged as CVE-2026-19880. The attack may be launched remotely. There is no exploit available.

Upgrading the affected component is recommended.