PT-2026-22101 · Copyparty · Copyparty

Iidk-The-Actual

·

Published

2026-02-26

·

Updated

2026-02-27

·

CVE-2026-27948

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Copyparty versions prior to 1.20.9
Description Copyparty is a portable file server susceptible to a cross-site scripting issue. A successful exploit allows for reflected cross-site scripting through the URL parameter ?setck=....
Recommendations Update to version 1.20.9 or later.

Exploit

Fix

XSS

Weakness Enumeration

Related Identifiers

CVE-2026-27948
GHSA-62CR-6WP5-Q43H

Affected Products

Copyparty