CVE-2026-75328

In DocSys-master V2.02.85, the downloadDocEx interface in src/com/DocSystem/controller/DocController.java has an arbitrary file read vulnerability:

  • Published Aug 26, 2026
  • CVSS 7.5 high
  • 0.5% chance of exploitation in the next 30 days (EPSS)

CVE-2026-75328 at the National Vulnerability Database