
CVE-2026-40265 Note Mark is an open-source note-taking application. In versions 0.19.1 and prior, the asset download endpoint at /api/notes/{noteID}/assets/{assetID} is registered w… https://www.cve.org/CVERecord?id=CVE-2026-40265
Post summary
The statement lists a CVE for Mark and offers a technical detail of the affected endpoint, but it lacks any indication of an exploit, patch, or active threat.

