PT-2026-68190 · Apache · Apache Answer

·

CVE-2026-50749

·

Published

2026-08-05

·

Updated

2026-08-06

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Apache Answer versions prior to 2.0.2
Description An improper authorization issue exists where any authenticated user can reject arbitrary pending edit-revisions. This occurs because the system lacks an authorization check during the reject operation, allowing users to perform this action without the required review permissions.
Recommendations Upgrade to version 2.0.2.

Exploit

Fix

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-50749

Affected Products

Apache Answer