CVE-2026-33072 | error311 FileRise up to 3.8.x Environment Variable default_please_change_this_key PERSISTENT_TOKENS_KEY hard-coded credentials
A vulnerability was found in error311 FileRise up to 3.8.x. It has been rated as critical. This issue affects the function default_please_change_this_key of the component Environment Variable Handler. The manipulation of the argument PERSISTENT_TOKENS_KEY leads to hard-coded credentials.
This vulnerability is uniquely identified as CVE-2026-33072. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is advised.