CVE-2025-26526
Separate Groups mode restrictions were not factored into permission
checks before allowing viewing or deletion of respo
Separate Groups mode restrictions were not factored into permission checks before allowing viewing or deletion of responses in Feedback activities.
MEDIUM · CVSS 6.5
EPSS 0.00381
Schedule remediation
- SSVC automatable: yes - attacks can be scripted at scale
Sigma rules0
YARA rules0