OCTOBER 6, 2026
Live Feed
Back to database
Case File

CVE-2026-71379

CRITICAL · CVSS 10 EPSS 0.44% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-29 · Last synced 2026-10-06

CyberRota Analysis

AI-Generated

The vulnerability allows unauthenticated attackers to exploit the file export endpoint, enabling them to export arbitrary database tables by sending a specially crafted POST request. This critical flaw poses a severe risk of data leakage and unauthorized access to sensitive information. Organizations using affected products should prioritize immediate remediation to protect their databases from potential exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-71379
Severity
CRITICAL
CVSS
10
EPSS
0.44%

Original NVD Description

The file export endpoint allows any unauthenticated attacker to export arbitrary database tables by sending a crafted POST request.