Pending AI Enrichment
This vulnerability was recently detected via the live feed and has not yet been processed by Precogs AI's context enrichment engine. The data below represents raw telemetric data.
RAW NVD TELEMETRY
CVE-2026-41951
CVSS Base Score
N/A
Primary Weakness
CWE-22
Published Date
May 11, 2026
Data Source
NVD API
Path traversal vulnerability exists in GROWI v7.5.0 and earlier, which may allow an attacker to execute arbitrary EJS templates on the server when an email server is running in GROWI.