File Retrieval Vulnerability in Wallos by ElitE
CVE-2026-30828
8.7HIGH
What is CVE-2026-30828?
Wallos, an open-source personal subscription tracker, contains a vulnerability that allows attackers to exploit the 'url' parameter for unauthorized file retrieval. This issue may expose sensitive local system files prior to version 4.6.2. Users are strongly advised to upgrade to version 4.6.2 or later to mitigate this risk.
Affected Version(s)
Wallos < 4.6.2
