CVE-2026-108729 - Corteza through 2024.9.10 Unauthenticated Attachment Access via Compose Attachment Endpoints
CVE ID :CVE-2026-108729 Published : Oct. 11, 2026, 1:17 p.m. | 13 minutes ago Description :Corteza through 2024.9.10 contains an incorrect authorization vulnerability in compose attachment endpoints that allows unauthenticated attackers to download private attachments by setting the URL kind...