Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Creative-Graphics.Ch

#27754of 53,608
9.2Total CVSS
Vulnerabilities · 1
PT-2026-6689
9.2
2026-02-06
Unknown · Easydiscuss · CVE-2026-21626
**Name of the Vulnerable Software and Affected Versions** EasyDiscuss (affected versions not specified) **Description** Access control settings for forum post custom fields are not enforced when data is output in JSON format. This results in an Access Control List (ACL) bypass, potentially leading to information disclosure. The issue allows unauthorized access to custom field data through JSON endpoints, requiring no authentication. This makes exploitation straightforward. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.