CVE-2026-96271

CVE-2026-96271 published: Photoview through 2.4.0 contains an authorization bypass vulnerability in the shareAlbum GraphQL mutation that allows authenticated users to create share links for albums owned by other users. Attackers can supply arbitrary album IDs to generate working sha...

View full NVD advisory → ← Back to CVE watch