Unrated severityNVD Advisory· Published Feb 13, 2026· Updated Feb 13, 2026
IDOR in Universal Sotware's FlexCity/Kiosk
CVE-2026-1619
Description
Authorization Bypass Through User-Controlled Key vulnerability in Universal Software Inc. FlexCity/Kiosk allows Exploitation of Trusted Identifiers.This issue affects FlexCity/Kiosk: from 1.0 before 1.0.36.
Affected products
2- Range: >=1.0, <1.0.36
- Universal Software Inc./FlexCity/Kioskv5Range: 1.0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- www.usom.gov.tr/bildirim/tr-26-0065mitrethird-party-advisory
News mentions
0No linked articles in our index yet.