All 4 CVE vulnerabilities found in Documenso, with AI-generated Chinese analysis, references, and POCs.
Vendor: Documenso
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-82472 | Documenso before 2.13.0 Unauthenticated File Upload via /api/files/upload-pdf CWE-306 | 7.5 | High | 2026-08-29 |
| CVE-2026-71247 | Documenso - Assistant Recipient Can Forge Another Signer's Signature in Sequential-Signing Documents CWE-863 | 6.5 | Medium | 2026-08-05 |
| CVE-2026-13543 | Documenso Google OAuth Login handle-oauth-callback-url.ts improper authentication CWE-287 | 5.6 | Medium | 2026-06-29 |
| CVE-2024-52271 | PDF Document Spoofing in Documenso CWE-451 | 4.3 | - | 2024-12-05 |
All 4 known CVE vulnerabilities affecting Documenso with full Chinese analysis, references, and POCs where available.