CVE-2026-53958 | RARgames 4gaBoards up to 3.3.8 SSO Identity Management update.js access control
A vulnerability was found in RARgames 4gaBoards up to 3.3.8. It has been rated as critical. Affected by this issue is some unknown functionality of the file server/api/controllers/users/update.js of the component SSO Identity Management. The manipulation of the argument ssoGoogleId/ssoGoogleEmail/ssoGithubId/ssoGithubUsername/ssoGithubEmail/ssoMicrosoftId/ssoMicrosoftEmail/ssoOidcId/ssoOidcEmail leads to improper access controls.
This vulnerability is listed as CVE-2026-53958. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.VulDB Recent EntriesRead More