ZeroHour

CVE-2026-2328

CVSS 3.1
7.5 high
EPSS
<1%p23
Published
()
Modified
Description

An unauthenticated remote attacker can exploit insufficient input validation to access backend components beyond their intended scope via path traversal, resulting in exposure of sensitive information.

Weakness
CWE-790
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.