This issue affects OctoCloud: from 1.12.06 before 1.12.07.
Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 09 Oct 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Akin
Akin octocloud |
|
| Vendors & Products |
Akin
Akin octocloud |
Thu, 08 Oct 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 08 Oct 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Authorization bypass through User-Controlled key vulnerability in AKIN Software Computer Import-Export Industry and Trade Co. Ltd. OctoCloud allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects OctoCloud: from 1.12.06 before 1.12.07. | |
| Title | IDOR in AKIN Software's OctoCloud | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: TR-CERT
Published:
Updated: 2026-10-08T14:20:53.595Z
Reserved: 2026-08-06T12:13:07.840Z
Link: CVE-2026-19083
Updated: 2026-10-08T14:20:50.489Z
Status : Deferred
Published: 2026-10-08T12:17:17.500
Modified: 2026-10-08T20:09:14.010
Link: CVE-2026-19083
No data.
OpenCVE Enrichment
Updated: 2026-10-09T08:05:31Z