CVE-2026-27933Disclosure(manyfold / manyfold)

LOWCVSS 6.8 · MEDIUM

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Manyfold is an open source, self-hosted web application for managing a collection of 3d models, particularly focused on 3d printing. Versions prior to 0.133.0 are vulnerable to session hijack via cookie leakage in proxy caches. Version 0.133.0 fixes the issue.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-613

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • manyfold

Threat summary

  • 2 mentions across 1 observed day

What's happening

  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • 2 total mentions across 1 day

Affected systems

Vendors
Products
manyfold

Deep dive

Activity timeline2 mentions / 1d
01122Mentions · 2026-02-26: 202-26
Signal classification2 categories
Disclosure
150.0%
General
150.0%
Referenced assets2 URLs
By indicator
Full discourse2 posts
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-27933 Manyfold is an open source, self-hosted web application for managing a collection of 3d models, particularly focused on 3d printing. Versions prior to 0.133.0 are vul… https://www.cve.org/CVERecord?id=CVE-2026-27933 ----- Traducción: CVE-2026-27933 Man… http://infoflow.cloud`

    Post summary

    The post announces CVE-2026-27933 affecting Manyfold versions before 0.133.0 and links to the CVE record, but provides no further technical, exploit, or mitigation details.

    0000031
    54 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-27933 Manyfold is an open source, self-hosted web application for managing a collection of 3d models, particularly focused on 3d printing. Versions prior to 0.133.0 are vul… https://www.cve.org/CVERecord?id=CVE-2026-27933

    Post summary

    The text references CVE-2026-27933, noting that versions prior to 0.133.0 are vulnerable, but provides no further technical details or actionable information.

    00000146
    56.6K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appmanyfoldmanyfold---

Explore more