CVE-2026-71215: Art-Template
High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.
art-template's sub-template resolution logic (src/compile/adapter/resolve-filename.js), used by both the include and extend template directives, resolves the target file path via path.resolve(root, filename) with no check afterward that the result remains inside root.
Affected products
- Art-Template Art-Template: up to and including 4.13.4
Published 2026-08-05. Last modified 2026-08-26.