CVE-2026-15342 | makeplane Plane up to 1.3.0 asset-management API workspace_slug/asset_id file access

SecurityVulns

A vulnerability described as critical has been identified in makeplane Plane up to 1.3.0. The affected element is an unknown function of the component asset-management API. Executing a manipulation of the argument workspace_slug/asset_id can lead to files or directories accessible.

This vulnerability is registered as CVE-2026-15342. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More