CVE-2026-30281 - Vulnerability Analysis
CriticalCVSS: 9.8Last Updated: April 1, 2026
MaruNuri LLC - Arbitrary File Overwrite
Published: March 31, 2026Updated: April 1, 2026Remote Exploitable
Overview
MaruNuri LLC v2.0.23 contains an arbitrary file overwrite vulnerability caused by the file import process, letting attackers overwrite critical internal files leading to code execution or information exposure, exploit requires no special conditions.
Severity & Score
Severity: Critical
CVSS Score: 9.8
Impact
Attackers can overwrite critical files, leading to arbitrary code execution or exposure of sensitive information.
Mitigation
Update to the latest version.
References
Related Resources
Details
- CVE ID
- CVE-2026-30281
- Severity
- Critical
- CVSS Score
- 9.8
- Type
- file_inclusion
- Status
- unconfirmed
CWE
- CWE-73
CVSS Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H