CVE-2026-105307 | Casdoor up to 3.161.1 API Endpoint routers/authz_filter.go ApiFilter missing authentication

SecurityVulns

A vulnerability was found in Casdoor up to 3.161.1. It has been rated as critical. Affected is the function ApiFilter of the file routers/authz_filter.go of the component API Endpoint. Performing a manipulation results in missing authentication.

This vulnerability is identified as CVE-2026-105307. The attack can be initiated remotely. Additionally, an exploit exists.

The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More