NEXUS8
by 8bitsecurity
Search
Signal
Radar
IOCs
Watchlist
Sign in
Premium
Search
Signal
Radar
IOCs
Watchlist
Sign in
Premium
Search
/
CVE-2026-58428
● CVE — Medium
CVE-2026-58428
Release attachment extension allowlist bypass via web release edit form (variant of CVE-2025-68939)
View graph
Watch
Export
CVSS v3.1
6.5
MEDIUM
EPSS
0.33
%
probability of exploitation in 30 days
CISA KEV
Not listed
no confirmed exploitation reported
News coverage
0
sources referencing this CVE
CVSS v3.1 Detail
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
HIGH
Availability
NONE
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Connections
2 relationships
Classification
2
CWE-434
source
CWE-424
source
Timeline
disclosure → media coverage
Aug 13, 2026
Disclosure
— published as a CVE record.