CVE-2026-23535
wlc is a Weblate command-line client using Weblate's REST API. Prior to 1.17.2, the multi-translation download could wri
wlc is a Weblate command-line client using Weblate's REST API. Prior to 1.17.2, the multi-translation download could write to an arbitrary location when instructed by a crafted server. This vulnerability is fixed in 1.17.2.
HIGH · CVSS 8
EPSS 0.00018
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0