SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-61972

MEDIUM · CVSS 5.3 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

ShopLentor Pro versions up to 2.8.5 are vulnerable to unauthenticated broken access control, allowing unauthorized users to access restricted resources or perform actions typically reserved for authenticated users. This vulnerability poses a medium risk, potentially leading to data exposure or manipulation. Organizations using affected versions should prioritize remediation to safeguard sensitive information and maintain system integrity.

CVE
CVE-2026-61972
Severity
MEDIUM
CVSS
5.3
EPSS
0.21%

Original NVD Description

Unauthenticated Broken Access Control in ShopLentor Pro <= 2.8.5 versions.