CVE-2026-80348 | TarsCloud TarsWeb up to 3.0.16 Patch Controller PatchController.js uploadAndPublish privileges management
A vulnerability has been found in TarsCloud TarsWeb up to 3.0.16 and classified as critical. Impacted is the function uploadAndPublish of the file app/controller/patch/PatchController.js of the component Patch Controller. The manipulation leads to improper privilege management.
This vulnerability is documented as CVE-2026-80348. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More