
CVE-2026-28793 Tina is a headless content management system. Prior to 2.1.8, the TinaCMS CLI development server exposes media endpoints that are vulnerable to path traversal, allowi… https://www.cve.org/CVERecord?id=CVE-2026-28793
Post summary
CVE-2026-28793 impacts TinaCMS CLI versions before 2.1.8, exposing a path traversal flaw in its media endpoints.


