Vulnerabilities (CVE)

Filtered by vendor Mauriceboe Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-40184 1 Mauriceboe 1 Trek 2026-04-21 N/A 3.7 LOW
TREK is a collaborative travel planner. Prior to 2.7.2, TREK served uploaded photos without requiring authentication. This vulnerability is fixed in 2.7.2.
CVE-2026-40185 1 Mauriceboe 1 Trek 2026-04-21 N/A 7.1 HIGH
TREK is a collaborative travel planner. Prior to 2.7.2, TREK was missing authorization checks on the Immich trip photo management routes. This vulnerability is fixed in 2.7.2.