CVE-2026-53593 | FreeScout up to 1.8.223 Helper /uploads/upload SecureController@upload restricted_extensions unrestricted upload
A vulnerability described as critical has been identified in FreeScout up to 1.8.223. Affected is the function SecureController@upload of the file /uploads/upload of the component Helper. The manipulation of the argument restricted_extensions results in unrestricted upload.
This vulnerability is reported as CVE-2026-53593. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More