CVE-2026-108591 | Innocommerce InnoShop up to 0.9.2 MCP file upload file_get_contents source information disclosure
A vulnerability has been found in Innocommerce InnoShop up to 0.9.2 and classified as problematic. Affected by this vulnerability is the function file_get_contents of the component MCP file upload. This manipulation of the argument Source causes information disclosure.
This vulnerability is handled as CVE-2026-108591. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More