Erlang/OTP 26.2.5.20 patch release fixes two bugs: a Unicode handling issue in erl.exe on Windows when using the args_file option (erts-14.2.5.14), and a security vulnerability (CVE-2026-32147) in the SFTP server where FSETSTAT operations on open file handles could modify file attributes outside the configured root directory, bypassing chroot boundary restrictions (ssh-5.1.4.15).
Table of contents
— erts-14.2.5.14 --------------------------------------------------— ssh-5.1.4.15 ----------------------------------------------------Sort: