A vulnerability marked as critical has been reported in RainyGao Hithub DocSys 2.02.80. The impacted element is an unknown function. The manipulation leads to unrestricted upload.

This vulnerability is traded as CVE-2026-67678. It is possible to initiate the attack remotely. There is no exploit available.