Authorization Bypass in JS Help Desk by Ahmad JS
CVE-2026-103079
5.4MEDIUM
What is CVE-2026-103079?
A critical security flaw in the JS Help Desk plugin, developed by Ahmad JS, allows unauthorized users to bypass access control mechanisms. This issue stems from an improperly configured access control level, which a malicious actor can exploit to gain access to sensitive functionalities or data. Affected versions include all from n/a to 4.0.0, potentially exposing users to significant risks if not addressed.
Affected Version(s)
JS Help Desk 0 <= 4.0.0