SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-28150

HIGH · CVSS 8.1 EPSS 0.35%

Source: NVD + CISA KEV + EPSS · Published 2026-08-20 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

The Golo Framework versions prior to 1.7.5 are vulnerable to unauthenticated Local File Inclusion (LFI), which could allow attackers to access sensitive files on the server, potentially leading to data exposure or system compromise. Organizations utilizing the Golo Framework should prioritize patching to mitigate this high-severity vulnerability and protect their systems from exploitation.

CVE
CVE-2026-28150
Severity
HIGH
CVSS
8.1
EPSS
0.35%

Original NVD Description

Unauthenticated Local File Inclusion in Golo Framework < 1.7.5 versions.