PT-2026-58824 · Git · Linux-Vserver

CVE-2026-52100

·

Published

2026-07-14

·

Updated

2026-07-14

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions linux-server versions 1.0 through 2.3.8
Description A Cross Site Request Forgery (CSRF) issue allows a remote attacker to execute arbitrary code through the uploadPutHandler() function. CSRF is a type of attack that tricks a victim into submitting a malicious request.
Recommendations As a temporary workaround, consider disabling the uploadPutHandler() function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-52100

Affected Products

Linux-Vserver