Generated remediation guidance and an executive summary. No account required.
MarkUs is a web application for the submission and grading of student assignments. Prior to version 2.9.4, MarkUs allows course instructors to upload YAML files to create/update various entities (e.g., assignment settings). These YAML files are parsed with aliases enabled. This issue has been patched in version 2.9.4.
Cite this page
CVE-2026-27807. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2026-27807
Use CWE-776, Markusproject vendor hub and Markus product page to widen CVE-2026-27807 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-25057, CVE-2026-28405 and CVE-2024-51743 for nearby disclosures in the same product family.