CVE-2026-21628

CRITICAL WAF: Medium
CVSS 9.8 Published: 2026-03-05
CWE-434

A improperly secured file management feature allows uploads of dangerous data types for unauthenticated users, leading to remote code execution.

WAF Coverage Analysis

Unrestricted File Upload Medium WAF Coverage

OWASP: A04:2021 Insecure Design

930xxx - Local File Inclusion

Affected Software

VendorProductVersion
templazaastroid_framework2.0.0 - 3.3.10

References

Back to CVE Database