CVE-2023-28876: Afian Filerun

Medium severity, CVSS 4.3. EPSS: 0.5% chance of exploitation in the next 30 days.

A Broken Access Control issue in comments to uploaded files in Filerun through Update 20220202 allows attackers to delete comments on files uploaded by other users.

Affected products

  • Afian Filerun: up to and including 2022.02.02

Published 2023-12-06. Last modified 2026-06-17.