
CVE-2026-40262 Note Mark is an open-source note-taking application. In versions 0.19.1 and prior, the asset delivery handler serves uploaded files inline and relies on magic-byte de… https://www.cve.org/CVERecord?id=CVE-2026-40262
Post summary
CVE-2026-40262 affects the Note Mark note-taking app by allowing inline serving of uploaded files that rely on magic-byte checks. No PoC, exploit, or patch information is presented.


