CRITICAL
Zora
CVE published 2026-03-31
CVE-2026-30285
CVE-2026-30285 is an arbitrary file overwrite vulnerability in Zora: Post, Trade, Earn Crypto v2.60.0. Attackers can overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure. The CVSS score is 9.8, indicating critical severity. This vulnerability affects users of the mentioned product version, who should apply the vendor's remediation to pr [truncated]