
CVE-2026-28736 ** UNSUPPORTED WHEN ASSIGNED ** Focalboard version 8.0 fails to validate file ownership when serving uploaded files. This allows an authenticated attacker who knows a… https://www.cve.org/CVERecord?id=CVE-2026-28736
Post summary
The text briefly announces a file‑ownership validation flaw in Focalboard 8.0 that could be exploited by authenticated users, but provides no PoC, exploit code, or patch information.

