CVE-2026-2731

Publication date

2026-02-19 06:46:52

Family

NCSC-FI

State

PUBLISHED

Description

Path traversal and content injection in JobRunnerBackground.aspx in DynamicWeb 8 (all) and 9 (<9.19.7 and <9.20.3) allows unauthenticated attackers to execute code via simple web requests