CVE-2026-71215: Art-Template

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

art-template's sub-template resolution logic (src/compile/adapter/resolve-filename.js), used by both the include and extend template directives, resolves the target file path via path.resolve(root, filename) with no check afterward that the result remains inside root.

Affected products

Published 2026-08-05. Last modified 2026-08-26.