CVE-2026-57578 | Riganti DotVVM up to 4.2.10/4.3.14 AuthorizeActionFilter improper authorization

SecurityVulns

A vulnerability was found in Riganti DotVVM up to 4.2.10/4.3.14. It has been declared as critical. This impacts the function OnCommandExecutingAsync/OnViewModelCreatedAsync/OnPresenterExecutingAsync of the component AuthorizeActionFilter. Executing a manipulation can lead to improper authorization.

The identification of this vulnerability is CVE-2026-57578. The attack may be launched remotely. There is no exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More