Improper Authorization in Huly Platform by hcengineering
CVE-2026-12213
5.3MEDIUM
What is CVE-2026-12213?
A vulnerability exists in the Huly Platform, specifically in the getAccountInfo function within the User Information Handler component. This flaw allows for improper authorization, facilitating potential unauthorized access to user accounts. The vulnerability can be exploited remotely, making it particularly concerning for users of the platform. Despite early contact regarding this security issue, the vendor has not provided any response, leaving the exploitation risk unaddressed. It is crucial for users to review their security posture and apply necessary mitigations or updates.
Affected Version(s)
Huly Platform 0.1
Huly Platform 0.2
Huly Platform 0.3
