Loading…
CVE-2026-40071 — pyload-ng has a WebUI JSON permission mismatch that lets ADD/DELETE users invoke · VulnScope