CVE-2026-40281 | Gotenberg up to 8.30.1 Metadata Write Endpoint argument injection (GHSA-q7r4-hc83-hf2q)
A vulnerability was found in Gotenberg up to 8.30.1. It has been declared as critical. This vulnerability affects unknown code of the component Metadata Write Endpoint. Executing a manipulation can lead to argument injection.
This vulnerability appears as CVE-2026-40281. The attack may be performed from remote. There is no available exploit.
A patch should be applied to remediate this issue.