
CVE-2026-33071 FileRise is a self-hosted web file manager / WebDAV server. In versions prior to 3.8.0, the WebDAV upload endpoint accepts any file extension including .phtml, .php5,… https://www.cve.org/CVERecord?id=CVE-2026-33071
Post summary
CVE-2026-33071 affects FileRise’s WebDAV upload endpoint, permitting upload of files with potentially executable extensions before version 3.8.0, but no proof of exploitation or patch information is mentioned.

