PT-2026-28049 · Unknown · Joomsky Js Help Desk

Published

2026-03-25

·

Updated

2026-03-25

·

CVE-2026-32535

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions JoomSky JS Help Desk versions through 3.0.3
Description An authorization bypass exists in JoomSky JS Help Desk due to incorrectly configured access control security levels. The issue is related to user-controlled keys and allows bypassing authorization.
Recommendations Versions prior to and including 3.0.3 should be updated.

Fix

IDOR

Weakness Enumeration

Related Identifiers

CVE-2026-32535

Affected Products

Joomsky Js Help Desk