CVE-2026-77637 | Cloudreve up to 4.17.x Routing Middleware routers/router.go tool.GET/tool.POST improper authorization

SecurityVulns

A vulnerability, which was classified as critical, has been found in Cloudreve up to 4.17.x. Affected by this vulnerability is the function tool.GET/tool.POST of the file routers/router.go of the component Routing Middleware. Performing a manipulation results in improper authorization.

This vulnerability is reported as CVE-2026-77637. The attack is possible to be carried out remotely. No exploit exists.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More