PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Jun 3, 2026

Windmill/Nextcloud Flow < 1.603.3 - Unauthenticated Path Traversal

Est. Time~10 seconds
Scan TypeGroup Scan
Targetsurl
CostFree
3.1k
Times Used
continuous scan runs
0
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2026-29059
6.9
CVSSmedium
Exploitable remotely over the internet · no authentication required.

Windmill is an open-source developer platform for internal code: APIs, background jobs, workflows and UIs. Prior to version 1.603.3, an unauthenticated path traversal vulnerability exists in Windmill's get_log_file endpoint "(/api/w/{workspace}/jobs_u/get_log_file/{filename})". The filename parameter is concatenated into a file path without sanitization, allowing an attacker to read arbitrary files on the server using ../ sequences. This issue has been patched in version 1.603.3.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
windmillby windmill-labs
< 1.603.3
Updated Sep 9, 2026View on NVD →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

Windmill/Nextcloud Flow < 1.603.3 - Unauthenticated Path Traversal CVE-2026-29059 Scanner | S4E