No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 01 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 01 May 2026 08:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Linkstack
Linkstack linkstack |
|
| Vendors & Products |
Linkstack
Linkstack linkstack |
Thu, 30 Apr 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in LinkStackOrg LinkStack up to 4.8.6. The affected element is the function saveLink of the file app/Http/Controllers/UserController.php of the component Management Endpoint. The manipulation leads to authorization bypass. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used. The pull request to fix this issue awaits acceptance. | |
| Title | LinkStackOrg LinkStack Management Endpoint UserController.php saveLink authorization | |
| Weaknesses | CWE-285 CWE-639 |
|
| References |
|
|
| Metrics |
cvssV2_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-01T14:23:54.744Z
Reserved: 2026-04-30T14:38:49.163Z
Link: CVE-2026-7502
Updated: 2026-05-01T14:23:49.986Z
Status : Deferred
Published: 2026-04-30T22:16:26.710
Modified: 2026-05-01T15:26:24.553
Link: CVE-2026-7502
No data.
OpenCVE Enrichment
Updated: 2026-05-01T08:15:12Z