File Browser File Management Interface Bug in File Handling By File Browser
CVE-2026-35607
8.1HIGH
What is CVE-2026-35607?
A vulnerability in the File Browser's file management interface allows users created via the proxy authentication handler to inherit execution permissions unintentionally. Prior to version 2.63.1, the fix applied to self-registered users did not encompass those auto-created accounts, thereby granting them elevated capabilities that could lead to unauthorized file execution. This oversight poses significant security risks, necessitating proactive updates to mitigate potential exploitation.
Affected Version(s)
filebrowser < 2.63.1
