What is CVE-2026-16309?
This CVE describes an authorization bypass via a user-controlled key vulnerability in Netiket Information Technologies' EdoWEB, allowing access to functionality not properly constrained by ACLs. Affected versions are before 780-g7, and users should immediately upgrade to version 780-g7 or later.
Azərbaycanca: Bu CVE, Netiket şirkətinin EdoWEB məhsulunda ACL ilə düzgün məhdudlaşdırılmamış funksionallığa giriş imkanı yaradan, istifadəçi tərəfindən idarə olunan açar vasitəsilə avtorizasiya bypass zəifliyidir. Təsirə məruz qalan versiyalar 780-g7 öncəsidir; istifadəçilər dərhal 780-g7 və ya daha yeni versiyaya yeniləməlidirlər.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
To which version should I upgrade EdoWEB to be protected against CVE-2026-16309?
The affected EdoWEB versions are before 780-g7, so you should immediately upgrade to version 780-g7 or later.
What security issue does CVE-2026-16309 cause in EdoWEB?
This vulnerability creates an authorization bypass via a user-controlled key, allowing access to functionality not properly constrained by ACLs.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.