CVE-2026-81889 | Studio-42 elFinder up to 2.1.69 SSRF Protection php/elFinder.class.php fsock_get_contents server-side request forgery

SecurityVulns

A vulnerability, which was classified as problematic, has been found in Studio-42 elFinder up to 2.1.69. Affected by this issue is the function fsock_get_contents of the file php/elFinder.class.php of the component SSRF Protection. The manipulation leads to server-side request forgery.

This vulnerability is referenced as CVE-2026-81889. Remote exploitation of the attack is possible. No exploit is available.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More