Missing Authorization Issue in Brainstorm Force's Spectra Plugin
CVE-2026-24982
5.3MEDIUM
What is CVE-2026-24982?
The Spectra plugin by Brainstorm Force contains a Missing Authorization vulnerability that allows attackers to exploit improper access control configurations. This flaw grants unauthorized users the ability to perform actions they should not have access to, potentially compromising site integrity and user data. The vulnerability affects versions from n/a up to and including 2.19.17, highlighting the need for prompt updates to mitigate risks associated with this security issue.
Affected Version(s)
Spectra 0 <= 2.19.17