Skip to content

Menu
  • Home
Menu

CVE-2026-27471 – ERP: Document access through endpoints due to missing validation

Posted on February 21, 2026
CVE ID : CVE-2026-27471

Published : Feb. 21, 2026, 7:16 a.m. | 1 hour, 28 minutes ago

Description : ERP is a free and open source Enterprise Resource Planning tool. In versions up to 15.98.0 and 16.0.0-rc.1 and through 16.6.0, certain endpoints lacked access validation which allowed for unauthorized document access. This issue has been fixed in versions 15.98.1 and 16.6.1.

Severity: 9.3 | CRITICAL

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

©2026 | Design: Newspaperly WordPress Theme