Improper access control in Mermaid Diagram Field - CVE-2026-96384
Published: September 24, 2026
Vulnerability details
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions when the affected module module does not sufficiently respect default revision behavior. A remote user can bypass implemented security restrictions and view modal diagram content.