Skip to content

Known CVE

Blinko <= 1.8.3 - Path Traversal via /plugins

Blinko <= 1.8.3 contains a path traversal caused by improper path concatenation without verification in the plugin file server endpoint, letting remote attackers access arbitrary files, exploit requires network access.

CVE-2026-23483

Medium2026CVSS 5.3CWE-22

cve2026 · blinko · blinko-space · lfi · path-traversal · unauth · arbitrary-file-read

Verified scans run this check after you prove you own the site.

All known CVEsView the checks catalogNational Vulnerability Database

Scan a website