CVE-2026-24815 | datavane tis up to 4.2.x impl unrestricted upload
A vulnerability categorized as critical has been discovered in datavane tis up to 4.2.x. This affects an unknown function of the file tis-plugin/src/main/java/com/qlangtech/tis/extension/impl. The manipulation results in unrestricted upload.
This vulnerability is identified as CVE-2026-24815. The attack can be executed remotely. There is not any exploit available.
It is advisable to upgrade the affected component.