CVE-2026-75328
In DocSys-master V2.02.85, the downloadDocEx interface in src/com/DocSystem/controller/DocController.java has an arbitrary file read vulnerability:
- Published Aug 26, 2026
- CVSS 7.5 high
- 0.5% chance of exploitation in the next 30 days (EPSS)