CVE-2026-27699CRITICALCVSS 9.1fixed in node-proxy-agents 0~2025070717+~cs15.2.7-1 (forky)2026
CVE-2026-27699 [CRITICAL] CVE-2026-27699: node-proxy-agents - The `basic-ftp` FTP client library for Node.js contains a path traversal vulnera...
The `basic-ftp` FTP client library for Node.js contains a path traversal vulnerability (CWE-22) in versions prior to 5.2.0 in the `downloadToDir()` method. A malicious FTP server can send directory listings with filenames containing path traversal sequences (`../`) that cause files to be written outside the intended download directory. Version 5.2.0 pa
debian