Authorization bypass through user-controlled key in Zammad - #VU153213
Published: October 3, 2026
Vulnerability details
The vulnerability allows a remote user to read and modify other users' overview ordering preferences.
The vulnerability exists due to authorization bypass through a user-controlled key in the personal overview ordering endpoints when handling requests to manage overview ordering preferences. A remote user can access, modify, delete, or create overview ordering preferences for other users to read and modify other users' overview ordering preferences.
The impact is limited to ticket overview ordering and sorting; no ticket content or other personal data is exposed.