CVE-2026-21626

EUVD-2026-5682
Access control settings for forum post custom fields are not applied to the JSON output type, leading to an ACL violation vector an information disclosure
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 2%
Affected Products (NVD)
VendorProductVersion
stackideaseasydiscuss
1.0.0 ≤
𝑥
≤ 5.0.15
𝑥
= Vulnerable software versions