CVE-2018-12560: Cantata Project Cantata

Medium severity, CVSS 6.5. EPSS: 1.8% chance of exploitation in the next 30 days.

An issue was discovered in the cantata-mounter D-Bus service in Cantata through 2.3.1. Arbitrary unmounts can be performed by regular users via directory traversal sequences such as a home/../sys/kernel substring.

Affected products

Published 2018-06-19. Last modified 2026-06-17.