Security Advisory

CVE-2026-23535

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-01-16 19:08:24
Last updated 2026-01-16 19:21:22
Assigner GitHub_M
CVSS score 8.1
State PUBLISHED

Description

wlc is a Weblate command-line client using Weblate's REST API. Prior to 1.17.2, the multi-translation download could write to an arbitrary location when instructed by a crafted server. This vulnerability is fixed in 1.17.2.