A vulnerability classified as problematic was found in Sulu up to 2.6.24/3.0.7. This vulnerability affects the function MediaManager::move of the file src/Sulu/Bundle/MediaBundle/Media/Manager/MediaManager.php of the component Media Move Endpoint. The manipulation of the argument collection results in permission issues. This vulnerability was named CVE-2026-82395. The attack may be performed from
PHP
Vulnerability
CVE-2026-82395
VulDB
Apply vendor security patch