VYPR

nextcrm-app

by Pdovhomilja

CVEs (1)

  • CVE-2026-47129Jul 20, 2026
    risk 0.00cvss epss 0.00

    NextCRM is open-source customer relationship management (CRM) software. Versions prior to 0.12.0 have a Broken Access Control (BAC) vulnerability in the `activateUser` and `deactivateUser` Next.js Server Actions of NextCRM. The application fails to verify if the requesting user…