Stats Digest Feeds
โ† Back to all CVEs

CVE-2026-56445

CRITICAL NVD
CVSS Score 9.1
Severity CRITICAL
Published Jun 25, 2026
Vendor unknown

Description

The qrscp application's C-STORE handler uses a specific instance from attacker-supplied DICOM datasets directly in os.path.join() without sanitization, allowing file writes to arbitrary paths.

References