CVE-2026-72575 | Daptin up to 0.12.34 Permission Check permission.go UserId/userId improper authorization
A vulnerability identified as critical has been detected in Daptin up to 0.12.34. Impacted is the function CanRead/CanPeek/CanCreate/CanUpdate/CanDelete/CanRefer of the file server/permission/permission.go of the component Permission Check. This manipulation of the argument UserId/userId causes improper authorization.
This vulnerability appears as CVE-2026-72575. The attack may be initiated remotely. There is no available exploit.VulDB Recent EntriesRead More