PT-2026-28050 · Halfdata · Green Downloads

Published

2026-03-25

·

Updated

2026-03-25

·

CVE-2026-32536

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions halfdata Green Downloads versions through 2.08
Description The software contains an unrestricted file upload issue that allows the use of malicious files. The vulnerability resides in the halfdata-paypal-green-downloads component. No information is available regarding the number of potentially affected devices or any real-world exploitation of this issue.
Recommendations Versions prior to or equal to 2.08 should be updated. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-32536

Affected Products

Green Downloads