Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.1

CVE-2026-37637: Alexantr Filemanager v.1.0 Remote Code Execution

CVE-2026-37637
Summary

The Alexantr Filemanager version 1.0 has a security issue that allows an attacker to run malicious code on a website. This could potentially allow an attacker to take control of the website or steal sensitive information. Update to the latest version of Alexantr Filemanager to fix this issue.

Original title
An issue in Alexantr filemanager v.1.0 allows a remote attacker to execute arbitrary code via the filemanager.php component
Original description
An issue in Alexantr filemanager v.1.0 allows a remote attacker to execute arbitrary code via the filemanager.php component
Vulnerability type
CWE-94 Code Injection
Published: 29 Jun 2026 · Updated: 23 Jul 2026 · First seen: 29 Jun 2026