CVE-2026-54676 | Erudika Scoold up to 1.68.x Answers Endpoint ApiController.java ApiController.getPostReplies access control

SecurityVulns

A vulnerability categorized as problematic has been discovered in Erudika Scoold up to 1.68.x. Affected by this issue is the function ApiController.getPostReplies of the file src/main/java/com/erudika/scoold/api/ApiController.java of the component Answers Endpoint. The manipulation results in improper access controls.

This vulnerability was named CVE-2026-54676. The attack may be performed from remote. There is no available exploit.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More