CVE-2026-48939 CRITICAL

iCagenda iCagenda Vulnerability
Generated: 10 Oct 2026 20:39 • CVE Threat Intelligence

Description

iCagenda contains an unrestricted upload of file with dangerous type vulnerability that allows the upload of arbitrary files in the file attachment feature, ultimately resulting in PHP code upload and execution.

9.8
CVSS CRITICAL

Details

Published
10 Jul 2026 00:00
Modified
N/A
Source
CIRCL
Vendor
iCagenda
Product
iCagenda
Fix Version
Vendor Patch / Mitigation Available