uniget CLI has Path Traversal in Hook Files - Directory Escape Vulnerability (CVE-2026-55062)
uniget is a universal installer and updater for (container) tools. Prior to 0.27.6, the hooks edit command in cmd/uniget/hooks.go concatenates an unvalidated hook filename with the selected hooks directory, allowing parent-directory components to escape that directory. The resulting path is passed to the configured editor, which can access or modify files outside the hooks directory with the privileges of the uniget process account. This issue is fixed in version 0.27.6.
AI Analysis
Technical Summary
The uniget CLI tool, used for installing and updating container tools, has a directory escape vulnerability (CVE-2026-55062) in versions before 0.27.6. The hooks edit command concatenates an unvalidated filename to the hooks directory path, allowing parent-directory traversal. This results in the configured editor being invoked on arbitrary filesystem locations accessible by the uniget process, potentially leading to unauthorized file access or modification. The vulnerability is addressed by a fix in version 0.27.6.
Potential Impact
An attacker able to control the hook filename argument can cause the uniget CLI to open files outside the intended hooks directory with the privileges of the uniget process. This could lead to unauthorized reading or modification of arbitrary files on the system where uniget runs. There are no known exploits in the wild at this time.
Mitigation Recommendations
Upgrade uniget CLI to version 0.27.6 or later, where the path traversal vulnerability in the hooks edit command is fixed. No additional mitigation is required once the update is applied.
uniget CLI has Path Traversal in Hook Files - Directory Escape Vulnerability (CVE-2026-55062)
Description
uniget is a universal installer and updater for (container) tools. Prior to 0.27.6, the hooks edit command in cmd/uniget/hooks.go concatenates an unvalidated hook filename with the selected hooks directory, allowing parent-directory components to escape that directory. The resulting path is passed to the configured editor, which can access or modify files outside the hooks directory with the privileges of the uniget process account. This issue is fixed in version 0.27.6.
CVSS v4.0
Affected software
Run on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
The uniget CLI tool, used for installing and updating container tools, has a directory escape vulnerability (CVE-2026-55062) in versions before 0.27.6. The hooks edit command concatenates an unvalidated filename to the hooks directory path, allowing parent-directory traversal. This results in the configured editor being invoked on arbitrary filesystem locations accessible by the uniget process, potentially leading to unauthorized file access or modification. The vulnerability is addressed by a fix in version 0.27.6.
Potential Impact
An attacker able to control the hook filename argument can cause the uniget CLI to open files outside the intended hooks directory with the privileges of the uniget process. This could lead to unauthorized reading or modification of arbitrary files on the system where uniget runs. There are no known exploits in the wild at this time.
Mitigation Recommendations
Upgrade uniget CLI to version 0.27.6 or later, where the path traversal vulnerability in the hooks edit command is fixed. No additional mitigation is required once the update is applied.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-m6jg-wr9m-cg2f
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-55062"]
- Ecosystems
- ["Go"]
- Database Specific Severity
- MODERATE
- Cvss Version
- 4.0
Threat ID: 6a838c6dbf8831d539b4e1c0
Added to database: 08/17/2026, 22:34:21 UTC
Last enriched: 09/25/2026, 01:58:22 UTC
Last updated: 10/02/2026, 02:46:05 UTC
Views: 58
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.