PT-2026-21230 · Wedevs · Subscribe2

Chokri Hammedi

+1

·

Published

2026-02-20

·

Updated

2026-02-21

·

CVE-2026-24944

CVSS v3.1

6.5

Medium

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N
Name of the Vulnerable Software and Affected Versions weDevs Subscribe2 versions through 10.44
Description An authorization issue exists in weDevs Subscribe2, allowing exploitation of incorrectly configured access control security levels.
Recommendations Update weDevs Subscribe2 to a version later than 10.44.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2026-24944

Affected Products

Subscribe2