CRITICAL
10.0 CVE-2026-39770 Published 6 Oct 2026
Doctreat Arbitrary File Upload Vulnerability
Worried this affects your website?
Doctreat versions up to and including 1.7.0 contain an unauthenticated arbitrary file upload vulnerability.
An attacker can exploit this flaw without authentication to upload arbitrary files to the affected website.
Reference: CVE-2026-39770 on NVD
← Back to Security News