Unrated severityOSV Advisory· Published Aug 3, 2026· Updated Aug 3, 2026
Admidio before 5.0.11 Authentication Bypass via forum.php
CVE-2026-69091
Description
Admidio before 5.0.11 contains an authentication bypass vulnerability in the forum module when configured in login-only mode. The access control logic in modules/forum.php fails to validate the login-only configuration state, allowing unauthenticated attackers to read forum topics and posts by directly accessing the module with read-only parameters.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2Patches
Vulnerability mechanics
References
2- github.com/Admidio/admidio/security/advisories/GHSA-cf48-6jrq-gjcmmitrevendor-advisory
- www.vulncheck.com/advisories/admidio-before-authentication-bypass-via-forum-phpmitrethird-party-advisory
News mentions
0No linked articles in our index yet.