CVE-2026-42162: Mahara Mahara vulnerability
Published Aug 17, 2026
·Updated
Mahara before 25.04.5 and 26.04.0 is vulnerable to artefacts being accessible to others under certain circumstances when the file path to an artefact in a page is manipulated.
Affected Software
1 affected component
Mahara Mahara<25.04.5, >25.04.5<=26.04.0
Event History
Aug 17, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2026-42162?
CVE-2026-42162 has a risk score of 30, indicating a significant security vulnerability.
2
How do I fix CVE-2026-42162?
To fix CVE-2026-42162, update Mahara to version 25.04.5 or 26.04.0 or later.
3
What systems are affected by CVE-2026-42162?
CVE-2026-42162 affects Mahara versions before 25.04.5 and 26.04.0.
4
What kind of data exposure does CVE-2026-42162 allow?
CVE-2026-42162 may allow unauthorized access to artefacts under certain conditions.
5
When was CVE-2026-42162 published?
CVE-2026-42162 was published on August 17, 2026.