6 min read
By: RedLegg's Cyber Threat Intelligence Team
About:
CVE-2026-40050 is a critical path traversal vulnerability in CrowdStrike LogScale caused by improper restriction of file paths combined with missing authentication controls.
An unauthenticated attacker can exploit this flaw over the network by sending crafted requests to access files or functionality outside intended directories. Successful exploitation may allow unauthorized access to sensitive system data or internal components of the LogScale platform.
RedLegg will occasionally communicate vulnerabilities released outside the usual release schedule to provide additional value to our customers. These emergency bulletins describe vulnerabilities or threats we classify as the highest severity level and warrant out-of-band emergency patching or mitigation action.
VULNERABILITIES
Unauthenticated Path Traversal Vulnerability in CrowdStrike LogScale
Identifier: CVE-2026-40050
CVSS Score: 9.8 (Critical, CVSS v3.1)
PoC or Exploitation:
Update/ Patch:
- Self-hosted CrowdStrike LogScale deployments
- LogScale Self-Hosted: GA versions 1.224.0 through 1.234.0 (inclusive).
- LogScale Self-Hosted LTS: Version 1.228.0, 1.228.1
- LogScale Self-Hosted 1.235.1 or later
- LogScale Self-Hosted 1.234.1 or later
- LogScale Self-Hosted 1.233.1 or later
- LogScale Self-Hosted 1.228.2 (LTS) or later
Mitigation Recommendation: