Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

Apache Commons FileUpload allows remote attackers to read arbitrary files

MINI-fr6m-65p5-ch28
Summary

Apache Commons FileUpload, a library used in some web applications, can allow attackers to access sensitive files on a server. This could happen if an attacker submits a malicious file to the application, potentially leading to unauthorized data disclosure. Affected applications should update to a fixed version of the library to prevent this issue.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
minio-operator-6 All versions
minio-operator-6-compat All versions
minio-operator-6-sidecar All versions
minio-operator-6-sidecar-compat All versions
Original title
MINI-fr6m-65p5-ch28
Published: 9 Mar 2026 · Updated: 13 Mar 2026 · First seen: 9 Mar 2026