SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-65525

MEDIUM · CVSS 5.3 EPSS 0.18%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

The Civi Framework versions up to 2.2.0 are susceptible to unauthenticated broken access control vulnerabilities, allowing unauthorized users to access restricted resources. This could lead to data exposure or manipulation, impacting the integrity and confidentiality of sensitive information. Organizations utilizing affected versions of the Civi Framework should prioritize remediation to mitigate potential exploitation risks.

CVE
CVE-2026-65525
Severity
MEDIUM
CVSS
5.3
EPSS
0.18%

Original NVD Description

Unauthenticated Broken Access Control in Civi Framework <= 2.2.0 versions.