Skip to main content
Loading…
    CVE-2026-5652 — An insecure direct object reference vulnerability in the Users API component of Crafty Controller allows a remote, authenticated attacker to perform user modification actions via improper API permissi — CVE Database · The Intelligence Room