Unrated severityNVD Advisory· Published Nov 4, 2025· Updated Nov 4, 2025
Missing Authorization vulnerability in CanalDenuncia.app
CVE-2025-41111
Description
A lack of authorisation vulnerability has been detected in CanalDenuncia.app. This vulnerability allows an attacker to access other users' information by sending a POST through the parameter 'id_denuncia' in '/backend/api/buscarComentariosByDenuncia.php'.
Affected products
2- CanalDenuncia/CanalDenuncia.appv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.