CyberRota Analysis
AI-GeneratedAn insecure direct object reference vulnerability in Plesk versions 18.0.79.7 and earlier, as well as 18.0.80 through 18.0.80.3, permits remote authenticated users to access and alter databases belonging to other customers. This could lead to unauthorized data exposure and manipulation, posing a significant risk to data integrity and confidentiality. Organizations using affected versions of Plesk should prioritize immediate remediation to mitigate potential data breaches.
CVE
CVE-2026-65642
Severity
HIGH
CVSS
8.6
EPSS
0.48%
Original NVD Description
Insecure direct object reference in Plesk 18.0.79.7 and earlier or 18.0.80 through 18.0.80.3, allows remote authenticated users to read and modify other customers' databases.