SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-71620

HIGH · CVSS 8.1 EPSS 0.43%

Source: NVD + CISA KEV + EPSS · Published 2026-09-04 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A file upload vulnerability in the Zhao-github ApiAdmin version 5.0.1 allows remote attackers to execute arbitrary code by uploading a specially crafted .php file. This could lead to unauthorized access and control over the affected GitHub instance. Organizations using this version of the software should prioritize patching to mitigate potential exploitation risks.

CVE
CVE-2026-71620
Severity
HIGH
CVSS
8.1
EPSS
0.43%
GitHub

Original NVD Description

File Upload vulnerability in Zhao-github ApiAdmin v.5.0.1 allows a remote attacker to execute arbitrary code via a crafted .php file