A vulnerability has been found in OpenKM Community Edition and Professional Edition up to 6.3.12 and classified as critical . This issue affects some unknown processing of the file /admin/Scripting . Performing a manipulation results in code injection. This vulnerability is known as CVE-2026-42785 . Remote exploitation of the attack is possible. Furthermore, an exploit is available.