CVE-2026-86804 | seakee CPA-Manager-Plus up to 1.11.10 HTTP handler.go CPAResource improper authorization
A vulnerability marked as problematic has been reported in seakee CPA-Manager-Plus up to 1.11.10. This vulnerability affects the function CPAResource of the file apps/manager-server/internal/http/controller/proxy/handler.go of the component HTTP Handler. The manipulation leads to improper authorization.
This vulnerability is traded as CVE-2026-86804. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More