CVE-2026-107450 | stumpapp Stump up to 0.1.10 Smart List Mutations smart_lists.rs updateSmartList/deleteSmartList creatorId/visibility permission
A vulnerability was found in stumpapp Stump up to 0.1.10. It has been declared as critical. Affected is the function updateSmartList/deleteSmartList of the file crates/graphql/src/mutation/smart_lists.rs of the component Smart List Mutations. The manipulation of the argument creatorId/visibility results in permission issues.
This vulnerability is known as CVE-2026-107450. It is possible to launch the attack remotely. No exploit is available.VulDB Recent EntriesRead More