๐Ÿ” CVE Alert

CVE-2026-67243

HIGH 7.2
CVSS Score
7.2
EPSS Score
0.0%
EPSS Percentile
0th

freo2 provided by refirio contains an unrestricted upload of file with dangerous type vulnerability. A user with the highest-level administrative privileges for the product may upload an executable file and execute arbitrary OS commands.

Vendor refirio
Product freo2
Published Aug 4, 2026
Stay Ahead of the Next One

Get instant alerts for refirio freo2

Be the first to know when new high vulnerabilities affecting refirio freo2 are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Affected Versions

refirio / freo2
0 < Ver 2.0.0-alpha-14

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
github.com: https://github.com/refirio/freo2/commits/main/ jvn.jp: https://jvn.jp/en/jp/JVN52865575/