
CVE-2026-41247 elFinder is an open-source file manager for web, written in JavaScript using jQuery UI. Prior to 2.1.67, elFinder contains a command injection vulnerability in the re… https://www.cve.org/CVERecord?id=CVE-2026-41247
Post summary
CVE‑2026‑41247 reveals a command‑injection flaw in elFinder versions prior to 2.1.67, with the vulnerability fixed in 2.1.67 and documented on the CVE record.
