CVE-2026-2556Disclosure(cskefu / cskefu)

LOWCVSS 2.1 · LOW

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A security vulnerability has been detected in cskefu up to 8.0.1. This issue affects some unknown processing of the file com/cskefu/cc/controller/resource/MediaController.java of the component Endpoint. The manipulation of the argument url leads to server-side request forgery. The attack may be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-918

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • cskefu

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
cskefu

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-02-16: 202-16
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets1 URL
By indicator
Full discourse2 posts
  • CVE@CVEnew
    General

    CVE-2026-2556 A security vulnerability has been detected in cskefu up to 8.0.1. This issue affects some unknown processing of the file com/cskefu/cc/controller/resource/MediaControll… https://www.cve.org/CVERecord?id=CVE-2026-2556

    Post summary

    The brief note announces CVE‑2026‑2556 in cskefu 8.0.1, citing an unspecified file handling issue, but offers no PoC, exploit, patch, or detailed technical info.

    10000598
    56.4K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-2556 A security vulnerability has been detected in cskefu up to 8.0.1. This issue affects some unknown processing of the file com/cskefu/cc/controller/resource/MediaControll… https://www.cve.org/CVERecord?id=CVE-2026-2556

    Post summary

    A CVE-2026-2556 vulnerability has been disclosed, affecting cskefu up to version 8.0.1, involving unknown processing of a file path.

    00000456
    56.4K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appcskefucskefu---

Explore more