Vulnerabilities
Report: Update: CVE-2026-40184 - Unauthenticated Access to Uploaded Files in TREK
CVE ID :CVE-2026-40184 Published : April 10, 2026, 8:16 p.m. | 1 hour, 28 minutes ago Description :TREK is a collaborative travel planner. Prior to 2.7.2, TREK served uploaded photos without requiring authentication. This vulnerability is fixed in 2.7.2. Severity: 3.7 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more...