CVE-2026-19966 | CodeCanyon TimeCamp Integration for CRM up to 2.8 Contact Information Update /clients/save_contact contact_id authorization
A vulnerability labeled as problematic has been found in CodeCanyon TimeCamp Integration for CRM up to 2.8. This issue affects some unknown processing of the file /clients/save_contact of the component Contact Information Update. Such manipulation of the argument contact_id leads to authorization bypass.
This vulnerability is uniquely identified as CVE-2026-19966. The attack can be launched remotely. Moreover, an exploit is present.VulDB Recent EntriesRead More