← All CVEs

CVE-2026-30281

critical · 9.8

An arbitrary file overwrite vulnerability in MaruNuri LLC v2.0.23 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.

9.8
CVSS
0.7%
EPSS (exploit prob.)
51st
EPSS percentile
2026-03-31
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-73

Affected products

VendorProductAffected versions
maruneo.maru2.0.23

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2026-30281