
CVE-2026-21000 Improper access control in Galaxy Store prior to version 4.6.03.8 allows local attacker to create file with Galaxy Store privilege. https://www.cve.org/CVERecord?id=CVE-2026-21000
Post summary
The post outlines CVE‑2026‑21000 where a local attacker can create a privileged file in Galaxy Store, noting the affected version and providing a CVE record link.
