PT-2026-26249 · Unknown · Really Simple Security

·

CVE-2026-27397

·

Published

2026-03-19

·

Updated

2026-03-19

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Really Simple Security Pro versions through 9.5.4.0
Description An authorization bypass exists in Really Simple Security Pro due to incorrectly configured access control security levels, allowing exploitation through a user-controlled key.
Recommendations Update Really Simple Security Pro to a version later than 9.5.4.0.

Fix

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-27397

Affected Products

Really Simple Security