🔐 CVE Alert

CVE-2026-11838

MEDIUM 4.3

Improper Authorization in Yordam Informatics' Library Reservation System

CVSS Score
4.3
EPSS Score
0.0%
EPSS Percentile
0th

Missing authentication for critical function vulnerability in Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc. Library Reservation System allows Input Data Manipulation. This issue affects Library Reservation System: before v22.2.

CWE CWE-306
Vendor yordam informatics technology consulting, training, and electronic systems industry and trade inc.
Product library reservation system
Published Sep 9, 2026
Last Updated Sep 9, 2026
Stay Ahead of the Next One

Get instant alerts for yordam informatics technology consulting, training, and electronic systems industry and trade inc. library reservation system

Be the first to know when new medium vulnerabilities affecting yordam informatics technology consulting, training, and electronic systems industry and trade inc. library reservation system are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
Low
Availability
None

Affected Versions

Yordam Informatics Technology Consulting, Training, and Electronic Systems Industry and Trade Inc. / Library Reservation System
0 < v22.2

References

NVD ↗ CVE.org ↗ EPSS Data ↗
siberguvenlik.gov.tr: https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-1035

Credits

Çınar FİDANBOY