
CVE-2026-40515 OpenHarness before commit bd4df81 contains a permission bypass vulnerability that allows attackers to read sensitive files by exploiting incomplete path normalization… https://www.cve.org/CVERecord?id=CVE-2026-40515
Post summary
The post announces a new OpenHarness permission bypass (CVE-2026-40515) that allows reading sensitive files via incomplete path normalization.

