Medium severity6.1NVD Advisory· Published Apr 22, 2026· Updated Apr 29, 2026
CVE-2026-6835
CVE-2026-6835
Description
The a+HCM developed by aEnrich has an Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload arbitrary files to any path, including HTML documents, which may result in a XSS-like effect.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2News mentions
0No linked articles in our index yet.