documenso

2 known vulnerabilities in documenso, with patch priority, exploit likelihood and the news covering them.

Latest vulnerabilities

  • CVE-2026-85697 CVSS 7.1 high Documenso 2.17.0 contains an access control vulnerability in the PDF-serving endpoint that fails to validate document visibility settings…
  • CVE-2026-82472 CVSS 8.7 high Documenso before 2.13.0 accepts PDF file uploads on the /api/files/upload-pdf endpoint without requiring authentication, session tokens…