What is CVE-2026-73240?
CVE-2026-73240 is a vulnerability in Apache Allura where specially crafted inputs can lead to git argument injection. It affects versions prior to 1.19.1. Users are recommended to upgrade to version 1.19.1, which addresses the issue.
Azərbaycanca: CVE-2026-73240, Apache Allura-da xüsusi hazırlanmış girişlərin `git` əmr sətirinə arqument inyeksiyasına səbəb ola biləcəyi boşluqdur. Bu, 1.19.1-dən əvvəlki versiyalara təsir edir. İstifadəçilərə problemi aradan qaldıran 1.19.1 versiyasına yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-77; shared vendor: Apache
FAQ2
What software does CVE-2026-73240 affect?
CVE-2026-73240 affects Apache Allura.
What should be done to address CVE-2026-73240?
Users are recommended to upgrade to Apache Allura version 1.19.1.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.