CVE-2026-81682
MEDIUM
NVD
CVSS Score
6.2
Severity
MEDIUM
Published
Aug 27, 2026
Vendor
unknown
Description
openssl_encrypt versions before 1.4.9 contain an insecure file permissions vulnerability in the desktop GUI that writes decrypted plaintext with world-readable default permissions. Attackers can read decrypted output files created by the GUI as unprivileged local users on multi-user systems.