Loading
pyload is an open-source Download Manager written in pure Python. An authenticated user can change the download folder and upload a crafted template to the specified folder lead to remote code execution. There is no fix available at the time of publication.
Use CWE-434, Pyload vendor hub and Pyload product page to widen CVE-2024-32880 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-33992, CVE-2024-47821 and CVE-2026-41133 for nearby disclosures in the same product family.