Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.

User Feedback: Unauthorized Access to User Data

CVE-2026-39476
Summary

A security issue in User Feedback allows unauthorized users to access sensitive data. This is a problem because it means that sensitive user information could be accessed without permission. To fix this, update to the latest version of User Feedback (1.10.2 or later).

Original title
Missing Authorization vulnerability in Syed Balkhi User Feedback userfeedback-lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects User Feedback: from n/a...
Original description
Missing Authorization vulnerability in Syed Balkhi User Feedback userfeedback-lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects User Feedback: from n/a through <= 1.10.1.
Vulnerability type
CWE-862 Missing Authorization
Published: 8 Apr 2026 · Updated: 9 Apr 2026 · First seen: 8 Apr 2026