CVE-2026-6377
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Next4Biz Information Technologies Inc. CSM (Customer Service Management) allows Path Traversal. This issue affects CSM (Customer Service Management): from 6.8.9 before 8.0.3.
- Published Sep 7, 2026
- CVSS 7.5 high
- 0.5% chance of exploitation in the next 30 days (EPSS)
- A fix is available