PT-2026-29866 · Newgen · Newgen Omnidocs

Kushkira

·

Published

2026-04-02

·

Updated

2026-04-03

·

CVE-2026-5414

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Newgen OmniDocs versions up to 12.0.00
Description A security flaw exists in Newgen OmniDocs up to version 12.0.00. The issue involves improper control of resource identifiers due to manipulation of the DocumentId argument within the /omnidocs/WebApiRequestRedirection file. This can be exploited remotely. The exploit has been publicly released.
Recommendations Update to a version beyond 12.0.00.

Exploit

Fix

Weakness Enumeration

Related Identifiers

CVE-2026-5414

Affected Products

Newgen Omnidocs