CVE-2026-19326: Jevon-Zhong Ai-Doctor

Medium severity, CVSS 4.4. EPSS: 0.2% chance of exploitation in the next 30 days.

A vulnerability was detected in Jevon-Zhong Ai-doctor 0.0.1. This vulnerability affects the function deleteImage of the file ai-doctor-server/src/filemanagement/filemanagement.service.ts. Performing a manipulation of the argument imagePath results in path traversal. The attack must be initiated from a local position. The project was informed of the problem early through an issue report but has not responded yet.

Affected products

Published 2026-08-09. Last modified 2026-08-12.