Known CVE
Audiobookshelf - Authentication Bypass
Audiobookshelf contains a path traversal caused by improper authentication-exemption check on URL-encoded paths in server/routers/Auth.js, letting unauthenticated attackers read arbitrary files, exploit requires crafted URL with encoded traversal sequences.
CVE-2026-71209
Critical2026CVSS 7.5CWE-287
cve2026 · audiobookshelf · auth-bypass · exposure
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website