CVE-2026-105131 | mayswind ezBookkeeping up to 2.0.0 refresh.json TokenRefreshHandler privileges management (EUVD-2026-92060)

SecurityVulns

A vulnerability was found in mayswind ezBookkeeping up to 2.0.0. It has been rated as critical. Impacted is the function TokenRefreshHandler of the file /api/v1/tokens/refresh.json. Performing a manipulation results in improper privilege management.

This vulnerability is known as CVE-2026-105131. Remote exploitation of the attack is possible. No exploit is available.

Upgrading the affected component is advised.VulDB Recent EntriesRead More