CVE-2026-96603 | Abdurrab5 online-makeup-store Admin functions.php confirm_logged_in/confirm_user adminid authorization

SecurityVulns

A vulnerability classified as critical was found in Abdurrab5 online-makeup-store. Affected is the function confirm_logged_in/confirm_user of the file functions.php of the component Admin Handler. Such manipulation of the argument adminid leads to missing authorization.

This vulnerability is listed as CVE-2026-96603. The attack may be performed from remote. In addition, an exploit is available.

This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed.

The vendor was contacted early about this disclosure.VulDB Recent EntriesRead More