CVE-2026-94151 | Omega Solution HRM OS up to 20260717 Role Permission API permission roleId missing authentication
A vulnerability was found in Omega Solution HRM OS up to 20260717. It has been declared as problematic. This affects an unknown function of the file /role-permission/permission of the component Role Permission API. Executing a manipulation of the argument roleId can lead to missing authentication.
The identification of this vulnerability is CVE-2026-94151. The attack may be launched remotely. Furthermore, there is an exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More