Improper access control in Mailer Plus Log - CVE-2026-16648
Published: September 3, 2026
Vulnerability details
The vulnerability allows a remote user to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to the affected module does not sufficiently redact the content of the emails it logs. A remote administrator can bypass implemented security restrictions and gain unauthorized access to the application.