CVE-2026-40185
EUVD-2026-2158710.04.2026, 20:16
TREK is a collaborative travel planner. Prior to 2.7.2, TREK was missing authorization checks on the Immich trip photo management routes. This vulnerability is fixed in 2.7.2.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mauriceboe | trek | 𝑥 ≤ 2.7.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration