MEDIUM 4.9 NVD
CVE-2026-102140
An authenticated administrator could initiate an administrative import using a file whose contents were not fully verified, because the import validated only th
An authenticated administrator could initiate an administrative import using a file whose contents were not fully verified, because the import validated only the file's header rather than the complete file. This could allow unverified or forged content to be accepted and processed, affecting the integrity of the imported data.
References
- https://github.com/kiteworks/security-advisories/security/advisories/GHSA-wfxj-p5jc-jqjw
- https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/VA/white/2026/va-26-274-
This medium severity vulnerability with a CVSS score of 4.9 was published on 2026-09-30 via NVD.
vulnfeed aggregates 9519 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.