CVE-2026-108540 - OpenSpug File Transfer transfer os command injection
CVE ID :CVE-2026-108540 Published : Oct. 11, 2026, 7:17 a.m. | 13 minutes ago Description :A flaw has been found in OpenSpug Spug up to 3.4.0/4.0.1. This impacts an unknown function of the file /exec/transfer of the component File Transfer. Executing a manipulation can lead to os command...