CVE-2026-27557
HIGH
NVD
CVSS Score
7.5
Severity
HIGH
Published
Sep 16, 2026
Vendor
unknown
Description
An unauthenticated remote attacker can exploit a path traversal vulnerability in the /index.php/view_uploaded_iodd_file endpoint allowing the SSH server's private keys to be read.