CVE-2026-28782 | Craft CMS prior 4.17.0-beta.1/5.9.0-beta.1 authorization (GHSA-jxm3-pmm2-9gf6)
A vulnerability categorized as problematic has been discovered in Craft CMS. The impacted element is an unknown function. The manipulation results in authorization bypass.
This vulnerability is reported as CVE-2026-28782. The attack can be launched remotely. No exploit exists.
It is advisable to upgrade the affected component.