CVE-2026-23986 | copier up to 9.11.1 _preserve_symlinks (GHSA-4fqp-r85r-hxqh)
A vulnerability was found in copier up to 9.11.1. It has been rated as critical. This affects the function _preserve_symlinks. The manipulation leads to symlink following.
This vulnerability is documented as CVE-2026-23986. The attack needs to be performed locally. There is not any exploit available.
Upgrading the affected component is advised.