๐Ÿ” CVE Alert

CVE-2026-12701

CRITICAL 9.0

Pulpcore: pulpcore: relative_path_validator bypass via directory traversal in filesystemexport

CVSS Score
9.0
EPSS Score
0.0%
EPSS Percentile
0th

A path traversal vulnerability was found in pulpcore. The relative_path_validator function only verifies that content paths do not begin with "/" but fails to block directory traversal sequences such as "../" anywhere in the path. An authenticated administrator can craft a relative_path containing embedded traversal sequences (e.g., "looking/normal/../../../../etc/shadow") that escapes the intended export directory during FilesystemExport operations. Because the file content is also user-controlled (uploaded artifact), this allows arbitrary file write to any location writable by the Pulp service user, potentially leading to service compromise or further system exploitation.

CWE CWE-22
Vendor red hat
Product red hat ansible automation platform 2.5 for rhel 8
Published Jul 20, 2026
Last Updated Jul 20, 2026
Stay Ahead of the Next One

Get instant alerts for red hat red hat ansible automation platform 2.5 for rhel 8

Be the first to know when new critical vulnerabilities affecting red hat red hat ansible automation platform 2.5 for rhel 8 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:H/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
High
User Interaction
None
Scope
Changed
Confidentiality
Low
Integrity
High
Availability
High

Affected Versions

Red Hat / Red Hat Ansible Automation Platform 2.5 for RHEL 8
All versions affected
Red Hat / Red Hat Ansible Automation Platform 2.5 for RHEL 9
All versions affected
Red Hat / Red Hat Ansible Automation Platform 2.6 for RHEL 9
All versions affected
Red Hat / Red Hat Satellite 6.16 for RHEL 8
All versions affected
Red Hat / Red Hat Satellite 6.16 for RHEL 8
All versions affected
Red Hat / Red Hat Satellite 6.16 for RHEL 9
All versions affected
Red Hat / Red Hat Satellite 6.16 for RHEL 9
All versions affected
Red Hat / Red Hat Satellite 6.17 for RHEL 9
All versions affected
Red Hat / Red Hat Satellite 6.17 for RHEL 9
All versions affected
Red Hat / Red Hat Satellite 6.18 for RHEL 9
All versions affected
Red Hat / Red Hat Satellite 6.18 for RHEL 9
All versions affected
Red Hat / Red Hat Satellite 6.19 for RHEL 9
All versions affected
Red Hat / Red Hat Satellite 6.19 for RHEL 9
All versions affected
Red Hat / Red Hat Ansible Automation Platform 2
All versions affected
Red Hat / Red Hat Ansible Automation Platform 2
All versions affected
Red Hat / Red Hat Ansible Automation Platform 2
All versions affected
Red Hat / Red Hat Update Infrastructure 4 for Cloud Providers
All versions affected
Red Hat / Red Hat Update Infrastructure 5
All versions affected

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
access.redhat.com: https://access.redhat.com/errata/RHSA-2026:42078 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:42079 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:42082 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:42150 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:42151 access.redhat.com: https://access.redhat.com/errata/RHSA-2026:42240 access.redhat.com: https://access.redhat.com/security/cve/CVE-2026-12701 bugzilla.redhat.com: https://bugzilla.redhat.com/show_bug.cgi?id=2490703

Credits

Red Hat would like to thank Martin Brodeur (Independent security researcher) for reporting this issue.