Vulnerabilities & Exploits · Zero-Day Exploit

Critical FreeScout Flaw Enables Zero-Click Server Compromise

The bug bypasses a prior fix for CVE-2026-27636 by using a zero-width space to save a .htaccess dotfile, creating a TOCTOU filename-sanitization bypass and enabling unauthenticated RCE.

4 sources · Mar 5

CVE-2026-28289

NVD KEV

CVSS 10 CRITICAL: freeScout is a free help desk and shared inbox built with PHP's Laravel framework. EPSS 31% (98th percentile).

CVE-2026-27636

NVD KEV

CVSS 8.8 HIGH: freeScout is a free help desk and shared inbox built with PHP's Laravel framework. EPSS 2% (79th percentile).

Timeline

Sources

Part of the PlainSec briefing for 2026-03-06

Every edition of this story: Critical FreeScout Flaw Enables Zero-Click Server Compromise

More from today