CVE-2026-35604General(filebrowser / filebrowser)

LOWCVSS 8.1 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Patch filebrowser filebrowser systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.1, when an admin revokes a user's Share and Download permissions, existing share links created by that user remain fully accessible to unauthenticated users. The public share download handler does not re-check the share owner's current permissions. This vulnerability is fixed in 2.63.1.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-863

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • filebrowser

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 1 signal
  • General: 2 classified signals
  • Peaked 1d ago at 2 mentions (2026-04-07); latest day: 1
  • 3 total mentions across 2 days

Affected systems

Products
filebrowser

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-04-07: 2Mentions · 2026-04-09: 1PoC Mentioned / Linked · 2026-04-09: 1Patch / Workaround · 2026-04-09: 1Technical Details · 2026-04-09: 104-0704-09
Signal classification2 categories
General
266.7%
PoC
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-072
General2
2026-04-091
PoC1
Full discourse3 posts
  • Hephaestvs@Vulcanux_
    PoC

    csirt_it: ‼️ #FileBrowser: disponibili #PoC per lo sfruttamento delle CVE-2026-35604 e CVE-2026-35607 Rischio: 🔴 Tipologia 🔸 Elevation of Privilege 🔸 Authentication Bypass 🔗 https://www.acn.gov.it/portale/w/file-browser-disponibili-poc-per-lo-sfruttamento-di-alcune-vulnerabilita ⚠ Importante aggiornare i software inte… https://t.co/aTseelvKsL

    Post summary

    The tweet announces Proof‑of‑Concepts for CVE‑2026‑35604 and CVE‑2026‑35607 affecting FileBrowser, identifies the attack vectors as privilege elevation and authentication bypass, and urges software updates.

    00020123
    620 followersView on X
  • Infoflowcloud@infoflowcloud
    General

    🚨*CVE* CVE-2026-35604 File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.1, when an admi… https://www.cve.org/CVERecord?id=CVE-2026-35604 ----- Traducción: CVE-2026-35604 Fil… http://infoflow.cloud`

    Post summary

    The tweet simply references CVE-2026-35604 and links to its official record, providing no evidence of exploitation, patches, or technical specifics.

    0000023
    67 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-35604 File Browser is a file managing interface for uploading, deleting, previewing, renaming, and editing files within a specified directory. Prior to 2.63.1, when an admi… https://www.cve.org/CVERecord?id=CVE-2026-35604

    Post summary

    The text briefly references CVE‑2026‑35604 and links to its official record, but provides no substantive details about the vulnerability, exploitation, or remediation.

    00000162
    57.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appfilebrowserfilebrowser---

Explore more