NVD HIGH: CVE-2026-66050 — NitroShare Desktop through 0.3.4 contains a path traversal vulnerability in its ...
NitroShare Desktop through 0.3.4 contains a path traversal vulnerability in its LAN file transfer server that allows unauthenticated attackers on the same network to write arbitrary files by sending a crafted filename containing directory traversal sequences in the JSON item header name field. Attackers can exploit the lack of path validation to write files outside the transfer root directory to a
CVE-2026-66050