S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Aug 20, 2026

CVE-2026-30958 Scanner

CVE-2026-30958 Scanner - Path Traversal vulnerability in OneUptime

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.2k
Times Used
continuous scan runs
6k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2026-30958
7.2
CVSShigh
Exploitable remotely over the internet · no authentication required.

OneUptime is a solution for monitoring and managing online services. Prior to 10.0.21, an unauthenticated path traversal in the /workflow/docs/:componentName endpoint allows reading arbitrary files from the server filesystem. The componentName route parameter is concatenated directly into a file path passed to res.sendFile() in orker/FeatureSet/Workflow/Index.ts with no sanitization or authentication middleware. This vulnerability is fixed in 10.0.21.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
oneuptimeby OneUptime
< 10.0.21
Updated Sep 9, 2026View on NVD →
Detail

OneUptime is a comprehensive monitoring and incident management platform designed for IT operations teams. It's used by organizations worldwide to ensure their systems remain operational and efficient. The platform assists in tracking uptime, error management, and resolving customer issues promptly. OneUptime integrates with various communication tools, allowing teams to stay connected and informed. It is employed by businesses of varying sizes to maintain service continuity. The software helps reduce downtime and improve response times.

The Path Traversal vulnerability in OneUptime allows attackers to navigate the filesystem. This vulnerability is caused by an unsanitized component name parameter. By exploiting this issue, unauthorized users can access restricted files. It can be exploited remotely without requiring authentication. This exposure can lead to a significant information disclosure risk.

Technical assessment of the vulnerability found that the 'componentName' parameter is vulnerable. The endpoint '/workflow/docs/:componentName' does not sanitize inputs properly. Attackers can manipulate this parameter to traverse directories. The method used typically involves appending directory traversal patterns like '../../' to the parameter. Once accessed, attackers can read sensitive information from server files. A status code of 200 with the presence of specific patterns in the response indicates successful exploitation.

Exploitation of this vulnerability can have serious consequences. Sensitive data such as configuration files or credentials might be exposed. Unauthorized access could compromise system security, leading to further attacks. Attackers might use this information to infiltrate other parts of the network. The organization may face reputational damage and financial loss. It emphasizes the importance of input validation and security updates.

REFERENCES

Solution Advice
  • Ensure the software is upgraded to version 10.0.21 or later.
  • Implement strict input validation on user inputs to prevent directory traversal.
  • Regularly review and update security patches to mitigate vulnerabilities like path traversal.
  • Conduct comprehensive security testing after updates to ensure no new vulnerabilities are introduced.
  • Consider using a web application firewall (WAF) to detect and block common attack patterns.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.