VYPR

Charts Endpoint

by Craftcms

CVEs (1)

  • CVE-2026-14794Jul 6, 2026
    risk 0.00cvss epss 0.00

    A flaw has been found in Craft CMS up to 4.18.0.1. Affected by this vulnerability is the function actionGetNewUsersData of the file src/controllers/ChartsController.php of the component Charts Endpoint. This manipulation of the argument userGroupId causes improper authorization.…