CVE-2026-106503 | Backstage prior 3.3.1/3.4.1/4.0.3/4.1.0 plugin-scaffolder-backend authorization
A vulnerability, which was classified as critical, was found in Backstage. This impacts an unknown function of the component plugin-scaffolder-backend. Executing a manipulation can lead to authorization bypass.
This vulnerability appears as CVE-2026-106503. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.VulDB Recent EntriesRead More