What is CVE-2026-42162?
A vulnerability in Mahara prior to version 25.04.5 allows unauthorized access to artefacts when the file path to an artefact within a page is manipulated. This can lead to information disclosure under certain circumstances. Users are advised to upgrade to version 25.04.5 or 26.04.0.
Azərbaycanca: Mahara platformasının 25.04.5-dən əvvəlki versiyalarında səhifədə fayl yolu manipulyasiya edildikdə artefaktların icazəsiz istifadəçilərə görünməsinə səbəb olan boşluq aşkarlanıb. Bu zəiflik məxfi məlumatların ifşasına yol aça bilər. İstifadəçilərə dərhal 25.04.5 və ya 26.04.0 versiyalarına yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-284
FAQ2
Which versions of Mahara are affected by this vulnerability?
Versions of Mahara prior to 25.04.5 are affected by this vulnerability.
What is the potential impact of this vulnerability?
This vulnerability can lead to information disclosure under certain circumstances.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.