MEDIUM GitHub
CVE-2026-55062
uniget CLI has Path Traversal in Hook Files - Directory Escape Vulnerability
### Summary
Path Traversal vulnerability in hook filename handling allows attackers to access and manipulate arbitrary files outside the hooks directory via directory escape sequences like [passwd](vscode-file://vscode-app/app/extra/vscode/resources/app/out/vs/code/electron-browser/workbench/workbench.html).
**Details**
File: [hooks.go](vscode-file://vscode-app/app/extra/vscode/resources/app/out/vs/code/electron-browser/workbench/workbench.html) `Lines 135-160`
```
hookFileName := args[0] // U
Affected Products
- go/gitlab.com/uniget-org/cli < 0.27.6
References
- https://github.com/advisories/GHSA-m6jg-wr9m-cg2f
- https://github.com/uniget-org/cli/security/advisories/GHSA-m6jg-wr9m-cg2f
- https://github.com/uniget-org/cli/commit/7b4f18a9f00f0955f830c7ccf266ed0de5f9fd91
- https://github.com/uniget-org/cli/releases/tag/v0.27.6
This medium severity vulnerability was published on 2026-08-17 via GitHub. Affected: go/gitlab.com/uniget-org/cli < 0.27.6.
vulnfeed aggregates 11030 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.