CVE-2026-41951
HIGH
NVD
CVSS Score
7.2
Severity
HIGH
Published
May 11, 2026
Vendor
unknown
Description
Path traversal vulnerability exists in GROWI v7.5.0 and earlier, which may allow an attacker to execute arbitrary EJS templates on the server when an email server is running in GROWI.