Apache · Apache Answer · CVE-2026-50749
**Name of the Vulnerable Software and Affected Versions**
Apache Answer versions prior to 2.0.2
**Description**
An improper authorization issue exists where any authenticated user can reject arbitrary pending edit-revisions. This occurs because the system lacks an authorization check during the reject operation, allowing users to perform this action without the required review permissions.
**Recommendations**
Upgrade to version 2.0.2.