Skip to main content
Loading…
    CVE-2026-45297 — OpenReplay is a self-hosted session replay suite. Prior to 1.26.0, there is a cross-tenant IDOR on feature-flag and assist-stats routes via {project_id} case mismatch. ProjectAuthorizer.__call__ (OSS — CVE Database · The Intelligence Room