CVE-2026-2328

An unauthenticated remote attacker can exploit insufficient input validation to access backend components beyond their intended scope via path traversal, resulting in exposure of sensitive information.
Configurations

No configuration.

History

17 Jun 2026, 10:30

Type Values Removed Values Added
Summary
  • (es) Un atacante remoto no autenticado puede explotar una validación de entrada insuficiente para acceder a componentes de backend más allá de su alcance previsto mediante salto de ruta, lo que resulta en la exposición de información sensible.

30 Mar 2026, 08:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-30 08:16

Updated : 2026-06-17 10:30


NVD link : CVE-2026-2328

Mitre link : CVE-2026-2328

CVE.ORG link : CVE-2026-2328


JSON object : View

Products Affected

No product.

CWE
CWE-790

Improper Filtering of Special Elements