CVE-2026-33686 | code16 sharp up to 9.19.x Management Frame src/Utils/FileUtil.php explodeExtension path traversal (ffq-6457-8958)
A vulnerability, which was classified as critical, has been found in code16 sharp up to 9.19.x. This issue affects the function FileUtil::explodeExtension of the file src/Utils/FileUtil.php of the component Management Frame Handler. The manipulation leads to path traversal.
This vulnerability is listed as CVE-2026-33686. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.