A vulnerability categorized as problematic has been discovered in Firecrawl up to 2.11.31. This affects an unknown function of the file apps/api/src/lib/extract/helpers/dereference-schema.ts of the component Schema Dereferencing. Executing a manipulation can lead to path traversal.
The identification of this vulnerability is CVE-2026-72904. The attack may be launched remotely. There is no exploit available.
It is advisable to upgrade the affected component.