CVE-2026-15630
CVE-2026-15630
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
A non-global organization admin in one tenant can bypass tenant boundaries to delete, create, or modify resources in any other tenant by exploiting a mismatch between authorization (based on ?id=) and action (based on request body).
| Vendor | casdoor |
| Product | casdoor |
| Published | Jul 23, 2026 |
Stay Ahead of the Next One
Get instant alerts for casdoor casdoor
Be the first to know when new unknown vulnerabilities affecting casdoor casdoor are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Casdoor / Casdoor
0 โค v3.115.0