CVE-2026-34754
MEDIUM
NVD
CVSS Score
4.3
Severity
MEDIUM
Published
May 20, 2026
Vendor
unknown
Description
Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.28.1 and prior allow an authenticated user to upload attachments to private Issues they are not authorized to access. This issue has been fixed in version 2.28.2.