VYPR
Critical severity9.8NVD Advisory· Published Jun 12, 2026· Updated Jun 12, 2026

CVE-2026-48611

CVE-2026-48611

Description

Improper authentication checks in the OAuth implementation allow account hijacking even when OAuth is not configured or enabled leading to unauthorized access in default installations.

Affected products

1

Patches

Vulnerability mechanics

References

1

News mentions

1