B3NCLOUD ARTICLE INTELLIGENCE

ARTICLEVIEW

Zurück zu News

CVE-2026-55744 - Cotonti CSRF in PFS allows forced arbitrary file upload

CVE ID :CVE-2026-55744 Published : June 18, 2026, 6:06 a.m. | 3 hours, 2 minutes ago Description :Cotonti 1.0.0 (master branch, commit f43f1fc3) is vulnerable to Cross-Site Request Forgery in the Personal File Storage (PFS) module. In modules/pfs/inc/pfs.main.php, the file upload action...

Original-Artikel öffnen Zurück zur Übersicht