CVE-2026-21878 | bacnet-stack BACnet Stack up to 1.5.0.rc3 apps/readfile/main.c path traversal (GHSA-p8rx-c26w-545j)
A vulnerability was found in bacnet-stack BACnet Stack up to 1.5.0.rc3. It has been declared as critical. This issue affects some unknown processing of the file apps/readfile/main.c. Such manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2026-21878. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.