A vulnerability categorized as critical has been discovered in 648540858 wvp-GB28181-pro 2.7.4-20260107 . This vulnerability affects unknown code of the file LogController.java of the component Log File Download Endpoint . The manipulation of the argument fileName results in path traversal. This vulnerability is cataloged as CVE-2026-19829 . The attack may be launched remotely. Furthermore, there is an exploit available.