CVE-2026-72814 | actix actix-files up to 0.6.9 Files::new serve_from information disclosure
A vulnerability, which was classified as problematic, was found in actix actix-files up to 0.6.9. The affected element is the function Files::new. The manipulation of the argument serve_from results in information disclosure.
This vulnerability is known as CVE-2026-72814. It is possible to launch the attack remotely. No exploit is available.
You should upgrade the affected component.VulDB Recent EntriesRead More