CVE-2023-26526: Nota-Info Bookly

High severity, CVSS 7.7. EPSS: 0.9% chance of exploitation in the next 30 days.

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Nota-Info Bookly allows Path Traversal, Manipulating Web Input to File System Calls.This issue affects Bookly: from n/a through 21.7.1.

Affected products

Published 2024-05-17. Last modified 2026-06-17.