CyberRota Analysis
AI-GeneratedMahara versions prior to 25.04.5 and 26.04.0 are susceptible to unauthorized access to artefacts due to potential manipulation of file paths within pages. This vulnerability could lead to sensitive information exposure, impacting user privacy and data integrity. Organizations using affected versions should prioritize remediation to safeguard against potential data breaches.
CVE
CVE-2026-42162
Severity
CRITICAL
CVSS
9.1
EPSS
0.35%
Original NVD Description
Mahara before 25.04.5 and 26.04.0 is vulnerable to artefacts being accessible to others under certain circumstances when the file path to an artefact in a page is manipulated.