CVE-2026-75328
High severity, CVSS 7.5. EPSS: 0.5% chance of exploitation in the next 30 days.
In DocSys-master V2.02.85, the downloadDocEx interface in src/com/DocSystem/controller/DocController.java has an arbitrary file read vulnerability:
Published 2026-08-26. Last modified 2026-09-09.