PT-2026-63614 · Unknown · Modules Anywhere

CVE-2026-65757

·

Published

2026-07-23

·

Updated

2026-07-23

CVSS v3.1

8.1

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions Modules Anywhere (affected versions not specified)
Description Inconsistent CSRF (Cross-Site Request Forgery) token checks and privilege checks in the editor popup may allow authenticated users to access restricted module data. This occurs when the system fails to verify if the user has the required module permissions or a valid request token.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

CSRF

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-65757

Affected Products

Modules Anywhere