CVE-2026-40185 - Missing Authorization on Immich Trip Photo Routes in TREK
CVE ID :CVE-2026-40185
Published : April 10, 2026, 8:16 p.m. | 3 hours, 52 minutes ago
Description :TREK is a collaborative travel planner. Prior to 2.7.2, TREK was missing authorization che...
Related Vulnerabilities
- CVE-2026-5144: The BuddyPress Groupblog plugin for WordPress is vulnerable to Privilege Escalation in all versions HIGH
- CVE-2026-3371: The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to Insecure MEDIUM
- CVE-2026-3358: The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to unauthori MEDIUM
- CVE-2026-3691: OpenClaw Client PKCE Verifier Information Disclosure Vulnerability. This vulnerability allows remote MEDIUM
- CVE-2026-5724: The frontend gRPC server's streaming interceptor chain did not include the authorization interceptor N/A
Related Coverage
Threat Actors