CVE-2026-97864 | GibbonEdu Gibbon up to 30.0.01 Unit Planner units_add_blockAjax.php makeBlock gibbonUnitBlockID/mode missing authentication (ID 2090)

SecurityVulns

A vulnerability classified as problematic has been found in GibbonEdu Gibbon up to 30.0.01. The affected element is the function makeBlock of the file modules/Planner/units_add_blockAjax.php of the component Unit Planner. The manipulation of the argument gibbonUnitBlockID/mode leads to missing authentication.

This vulnerability is uniquely identified as CVE-2026-97864. The attack is possible to be carried out remotely. Moreover, an exploit is present.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More