PT-2026-99721 · Unknown · Krayin Laravel-Crm

·

CVE-2026-100883

·

Published

2026-09-27

·

Updated

2026-09-28

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Krayin laravel-crm versions prior to 2.2.6
Description An improper access control issue exists in the packages/Webkul/Admin/src/Config/acl.php file. A remote attacker can execute a manipulation of an unknown function within this file to bypass access restrictions.
Recommendations Upgrade to version 2.2.6.

Exploit

Fix

Incorrect Privilege Assignment

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-100883

Affected Products

Krayin Laravel-Crm