Report: CVE-2026-40185 - Missing Authorization on Immich Trip Photo Routes in TREK

Report: CVE-2026-40185 - Missing Authorization on Immich Trip Photo Routes in TREK

CVE ID :CVE-2026-40185 Published : April 10, 2026, 8:16 p.m. | 1 hour, 28 minutes ago Description :TREK is a collaborative travel planner. Prior to 2.7.2, TREK was missing authorization checks on the Immich trip photo management routes. This vulnerability is fixed in 2.7.2. Severity: 7.1 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
April 10, 2026