Latest
Alerts
Security
DevOps
Cloud
AI
Self-hosted
Linux
Networking
Search
⌘K
FR
live
CVE-2026-48710 · Kludex Starlette
CVE-2026-49869 · Kestra Kestra OSS
CVE-2026-59822 · BerriAI LiteLLM · CVSS 8.2
CVE-2026-82329 · JFrog Artifactory
home
alerts
Filegator
vendor
Filegator
1
vulnerability tracked
21 July 2026
latest publication
cve
Vulnerability watch
id
vulnerability
severity
published
CVE-2026-63358
FileGator accepts arbitrary Unix permission values via the '/chmoditems' API endpoint and passes the value directly to PHP's native 'chmod()' function through 'octdec()' conversion, with no validation. This allows an authenticated user with 'chmod' permission to upgrade their privileges to root.
Filegator
High
CVSS 7.3
21/07
← Back to the watch
esc
Type at least two characters.
↑
↓
navigate
↵
open
esc
dismiss