BurgerEditor 3.0.0 through 3.4.0 contains an issue with authorization bypass through user-controlled key. If this vulnerability is exploited, the content of the page may be altered by an attacker who can log in to the product may be caused.
History

Thu, 10 Sep 2026 04:00:00 +0000

Type Values Removed Values Added
Title Authorization Bypass Allowing Content Modification in BurgerEditor 3.x

Thu, 10 Sep 2026 02:30:00 +0000

Type Values Removed Values Added
Description BurgerEditor 3.0.0 through 3.4.0 contains an issue with authorization bypass through user-controlled key. If this vulnerability is exploited, the content of the page may be altered by an attacker who can log in to the product may be caused.
Weaknesses CWE-639
References
Metrics cvssV3_0

{'score': 4.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N'}

cvssV4_0

{'score': 5.3, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2026-09-10T02:15:14.043Z

Updated: 2026-09-10T02:15:14.043Z

Reserved: 2026-09-01T05:55:36.965Z

Link: CVE-2026-84062

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-10T03:17:00.213

Modified: 2026-09-10T03:17:00.213

Link: CVE-2026-84062

cve-icon Redhat

No data.