High severity7.7NVD Advisory· Published Sep 9, 2026
CVE-2026-15913
CVE-2026-15913
Description
In versions prior to 7.10.2 a path traversal vulnerability in the /attachRemoteFiles endpoint of Fortra's GoAnywhere MFT allows Web Users with both Secure Folders and Secure Mail permissions to escape their sandboxed home directory, achieving arbitrary file read.
Affected products
1- Range: <7.10.2
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.