A high-severity security flaw impacting open-source developer
platform Windmill has come under active exploitation in the wild,
per VulnCheck. The vulnerability in question is CVE-2026-29059
(CVSS score: 7.5), a case of unauthenticated path traversal
impacting Windmill's "get_log_file" endpoint
("/api/w/{workspace}/jobs_u/get_log_file/{filename}"). "The
filename parameter is concatenated into
Read more https://thehackernews.com/2026/07/hackers-exploit-windmill-flaw-to-read.html

