← العودة للجدول
CVE-2026-81891
CVE-2026-81891 | Studio-42 elFinder up to 2.1.69 elFinderVolumeDriver.class.php checkExtractItems unrestricted upload
📅 2026-09-01
🟡 Medium 🔥 No VulDB Exploit Web

📋 الوصف الكامل

A vulnerability labeled as critical has been found in Studio-42 elFinder up to 2.1.69. This issue affects the function checkExtractItems of the file php/elFinderVolumeDriver.class.php. Executing a manipulation can lead to unrestricted upload. This vulnerability is handled as CVE-2026-81891. The attack can be executed remotely. There is not any exploit available. The affected component should be

💻 الأنظمة المتأثرة

PHP

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2026-81891

📡 المصدر

VulDB

✅ الحلول والتخفيف

Apply vendor security patch

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ← 🔍 Valters IT ←