MEDIUM
mrmn2
CVE published 2026-03-31
CVE-2026-34586
CVE-2026-34586 is an access control bypass vulnerability in PdfDing, a self-hosted PDF manager, viewer, and editor. The issue allows previously authorized users to access shared PDF content after expiration, view limit, or soft-deletion. This vulnerability affects PdfDing versions prior to 1.7.1. Users should apply the patch to prevent unauthorized access to shared PDF content.