๐Ÿ” CVE Alert

CVE-2026-13229

UNKNOWN 0.0

Zammad 7.0.1 - Improper authorization in ticket article attachment cloning

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

Zammad 7.1.0 contains an authenticated improper authorization vulnerability in the ticket article attachment cloning endpoint.

CWE CWE-862
Vendor zammad
Product zammad
Published Aug 4, 2026
Stay Ahead of the Next One

Get instant alerts for zammad zammad

Be the first to know when new unknown vulnerabilities affecting zammad zammad are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

Zammad / Zammad
0 โ‰ค 7.0.1

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
fluidattacks.com: https://fluidattacks.com/es/advisories/chicago github.com: https://github.com/zammad/zammad/security/advisories/GHSA-374g-4f73-g7m7 github.com: https://github.com/zammad/zammad/releases/tag/7.1.2

Credits

Oscar Naveda Fluid Attacks' AI SAST Scanner