Report: CVE-2026-27018 - Gotenberg: Chromium deny-list bypass via case-insensitive URL scheme - Guide

Report: CVE-2026-27018 - Gotenberg: Chromium deny-list bypass via case-insensitive URL scheme - Guide

CVE ID :CVE-2026-27018 Published : March 30, 2026, 9:17 p.m. | 14 minutes ago Description :Gotenberg is an API for converting document formats. Prior to version 8.29.0, the fix introduced for CVE-2024-21527 can be bypassed using mixed-case or uppercase URL schemes. This issue has been patched in version 8.29.0. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
March 30, 2026