A vulnerability classified as problematic has been found in h3js h3 up to 1.15.8. This impacts the function resolveDotSegments of the component serveStatic utility. The manipulation leads to path traversal. This vulnerability is traded as CVE-2026-86251. It is possible to initiate the attack remotely. There is no exploit available. It is... Weiterlesen
Intelligence View
CVE-2026-86251 | h3js h3 up to 1.15.8 serveStatic utility resolveDotSegments path traversal (EUVD-2026-72107)
A vulnerability classified as problematic has been found in h3js h3 up to 1.15.8. This impacts the function resolveDotSegments of the component serveStatic utility. The manipulation leads to path traversal. This vulnerability is traded as…
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - CVE-2026-86251 | h3js h3 up to 1.15.8 serveStatic utility resolveDotSegments path traversal (EUVD-2026-72107)
id: b0cf036d-9bb7-4a9b-8c26-bdb190d025c2
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
- https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-24
logsource:
category: network_connection
product: any
detection:
selection:
CommandLine|contains:
- 'exploit'
condition: selection
falsepositives:
- Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
- attack.initial_accessrule CTI_Threat_Indicator {
meta:
author = "iShareStuff CTI Automated Detection Engine"
date = "2026-09-24"
description = "YARA Signature for "
strings:
$str = "CVE-2026-86251 | h3js h3 up to" ascii wide
condition:
any of them
}
SOCIAL SHARE CARD GENERATOR