Authorization bypass through user-controlled key in Zammad - #VU153213

 

Authorization bypass through user-controlled key in Zammad - #VU153213

Published: October 3, 2026


Vulnerability identifier: #VU153213
CSH Severity: Low
CVSS v4: 5.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-639
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote user to read and modify other users' overview ordering preferences.

The vulnerability exists due to authorization bypass through a user-controlled key in the personal overview ordering endpoints when handling requests to manage overview ordering preferences. A remote user can access, modify, delete, or create overview ordering preferences for other users to read and modify other users' overview ordering preferences.

The impact is limited to ticket overview ordering and sorting; no ticket content or other personal data is exposed.


Affected software

Zammad

Remediation

Install security update from vendor's website.

Zammad - update to 7.1.3

External References

Related Security Bulletins