CVETodo[verified]@CveTodoDisclosure
The post discloses a path traversal flaw in the basic‑ftp Node.js library that allows attackers to write files outside the intended directory, but it does not mention any PoC, exploit, or patch.
Gray Hats@the_yellow_fallPatch
The Node.js basic-ftp library has been patched for a critical path traversal flaw (CVE-2026-27699) that allowed malicious FTP servers to overwrite any file on the client machine.
Autumn Good@autumn_good_35General
The snippet simply enumerates several CVE identifiers and a reference to an HPE support document, providing no further details on exploitation, patches, or technical aspects.
CRAC Learning - Tech@cracbotDisclosure
The post announces a critical path traversal vulnerability (CVE‑2026‑27699) in the basic‑ftp Node.js library, affecting versions before 5.2, with a CVSS score of 9.1.
Infoflowcloud@infoflowcloudDisclosure
CVE‑2026‑27699 is a path traversal flaw in the basic‑ftp Node.js library’s downloadToDir() method affecting versions before 5.2.0.
CVE@CVEnewDisclosure
CVE‑2026‑27699 is a path traversal vulnerability in the basic‑ftp Node.js library’s downloadToDir() method, affecting versions before 5.2.0.
PulsePatch.io@pulsepatchioPatch
The post announces a path‑traversal vulnerability (CVE-2026-27699) in the basic‑ftp Node.js library and recommends updating to 5.2.0 or later to mitigate the issue.
PulsePatch.io@pulsepatchioPatch
Basic FTP's CVE-2026-27699 is a path traversal vulnerability that could allow arbitrary file writes, with a patch to v5.2.0+ recommended.