CVE-2026-75328

High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.

In DocSys-master V2.02.85, the downloadDocEx interface in src/com/DocSystem/controller/DocController.java has an arbitrary file read vulnerability:

Published 2026-08-26. Last modified 2026-09-09.