CVE-2026-30403: Path Traversal
Published Mar 19, 2026
·Updated
There is an arbitrary file read vulnerability in the test connection function of backend database management in wgcloud v3.6.3 and before, which can be used to read any file on the victim's server.
Affected Software
2 affected components
Wgcloud<=3.6.3
Wgstart Wgcloud<=3.6.3
Event History
Mar 19, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-30403?
CVE-2026-30403 has been classified as a high severity vulnerability due to its potential to expose sensitive files on the server.
2
How do I fix CVE-2026-30403?
To remediate CVE-2026-30403, update wgcloud to version 3.6.4 or later to ensure the vulnerability is patched.
3
What are the potential impacts of CVE-2026-30403?
The CVE-2026-30403 vulnerability can allow an attacker to read arbitrary files, potentially leading to unauthorized access to sensitive information.
4
Which versions of wgcloud are affected by CVE-2026-30403?
CVE-2026-30403 affects wgcloud versions 3.6.3 and earlier.
5
Is there a public repository for CVE-2026-30403?
Yes, discussions and issues related to CVE-2026-30403 can be found in the GitHub repositories for wgcloud.