Angel Lomeli

1 exploit Active since Feb 2026
CVE-2026-1358 WRITEUP CRITICAL WRITEUP
Airleader Master < 6.381 - Unauthenticated Remote Code Execution via Unrestricted File Upload
Airleader Master versions 6.381 and prior allow for file uploads without restriction to multiple webpages running maximum privileges. This could allow an unauthenticated user to potentially obtain remote code execution on the server.
CVSS 9.8