SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-42162

CRITICAL · CVSS 9.1 EPSS 0.35%

Source: NVD + CISA KEV + EPSS · Published 2026-08-17 · Last synced 2026-09-16

CyberRota Analysis

AI-Generated

Mahara versions prior to 25.04.5 and 26.04.0 are susceptible to unauthorized access to artefacts due to potential manipulation of file paths within pages. This vulnerability could lead to sensitive information exposure, impacting user privacy and data integrity. Organizations using affected versions should prioritize remediation to safeguard against potential data breaches.

CVE
CVE-2026-42162
Severity
CRITICAL
CVSS
9.1
EPSS
0.35%

Original NVD Description

Mahara before 25.04.5 and 26.04.0 is vulnerable to artefacts being accessible to others under certain circumstances when the file path to an artefact in a page is manipulated.