VYPR
High severity8.1NVD Advisory· Published Jun 15, 2026· Updated Jun 16, 2026

CVE-2026-50891

CVE-2026-50891

Description

Incorrect access control in the /admin/api/config component of Filestash v0.4.0 allows attackers to escalate privileges via sending a crafted request.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
github.com/mickael-kerjean/filestashGo
<= 0.2.2-0.20260827111952-cbcd1e96ebc7

Affected products

4

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.