CVE-2026-58593 | NodeBB 4.13.2 Private Message object.id data authenticity

SecurityVulns

A vulnerability identified as problematic has been detected in NodeBB 4.13.2. This affects an unknown part of the component Private Message Handler. This manipulation of the argument object.id causes insufficient verification of data authenticity.

This vulnerability is registered as CVE-2026-58593. Remote exploitation of the attack is possible. Furthermore, an exploit is available.VulDB Recent EntriesRead More