CVE-2026-23483 | blinkospace blinko up to 1.8.3 Plugin File Server Endpoint join path traversal (GHSA-54c7-9gxh-fg9v)
A vulnerability was found in blinkospace blinko up to 1.8.3. It has been declared as critical. This affects the function join of the component Plugin File Server Endpoint. Executing a manipulation can lead to path traversal.
The identification of this vulnerability is CVE-2026-23483. The attack may be launched remotely. There is no exploit available.
Applying a patch is advised to resolve this issue.