CVE WATCH / VULNERABILITY DETAIL

CVE-2026-96538

UNKNOWNCVSS 0NVD feed

Published 28 September 2026 · tracked since 28 September 2026

Description

WarehousePG (WHPG) 7.x before 7.6.0-WHPG is affected by a missing authorization vulnerability (CWE-862) in the built-in server-side file functions pg_file_write(text,text,bool), pg_file_rename(text,text,text), pg_file_unlink(text), and pg_logdir_ls(). These functions are executable by any authentica

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

CVE-2026-96538 — Vulnerability Details | Logic Encoder
CVE WATCH / VULNERABILITY DETAIL

CVE-2026-96538

UNKNOWNCVSS 0NVD feed

Published 28 September 2026 · tracked since 28 September 2026

Description

WarehousePG (WHPG) 7.x before 7.6.0-WHPG is affected by a missing authorization vulnerability (CWE-862) in the built-in server-side file functions pg_file_write(text,text,bool), pg_file_rename(text,text,text), pg_file_unlink(text), and pg_logdir_ls(). These functions are executable by any authentica

References

Latest tracked vulnerabilities

→ Open the live CVE board · all tools

[an error occurred while processing this directive]