CRITICAL 9.8 CVE-2026-50894 Published 4 Sept 2026

EasyAdmin Arbitrary Code Execution

Worried this affects one of your servers?

easyadmin v2.0.2.2 is vulnerable to Unrestricted Upload of File with Dangerous Type in the background management interface.

Authenticated remote attackers can execute arbitrary code and gain server privileges via a crafted file upload.

Reference: CVE-2026-50894 on NVD

← Back to Security News