CVE-2026-82679 | diem-project diem up to 5.1.3 Widget Editor dmWidgetContentBaseMediaForm.php unrestricted upload (Issue 448)
A vulnerability was found in diem-project diem up to 5.1.3. It has been rated as critical. The impacted element is an unknown function of the file dmFrontPlugin/lib/dmWidget/media/dmWidgetContentBaseMediaForm.php of the component Widget Editor. Performing a manipulation results in unrestricted upload.
This vulnerability was named CVE-2026-82679. The attack may be initiated remotely. In addition, an exploit is available.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More