Metrics
Affected Vendors & Products
Mon, 01 Jun 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Devaslanphp project Management
|
|
| Vendors & Products |
Devaslanphp project Management
|
Mon, 01 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in DevaslanPHP project-management up to 2.0.0-beta1. Affected by this vulnerability is the function editComment/doDeleteComment of the file app/Filament/Resources/TicketResource/Pages/ViewTicket.php of the component Livewire Handler. Executing a manipulation can lead to improper authorization. The attack can be executed remotely. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | DevaslanPHP project-management Livewire ViewTicket.php doDeleteComment improper authorization | |
| First Time appeared |
Devaslanphp
Devaslanphp project-management |
|
| Weaknesses | CWE-266 CWE-285 |
|
| CPEs | cpe:2.3:a:devaslanphp:project-management:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Devaslanphp
Devaslanphp project-management |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-01T19:00:09.664Z
Reserved: 2026-05-31T16:30:10.696Z
Link: CVE-2026-10284
No data.
Status : Received
Published: 2026-06-01T21:16:25.130
Modified: 2026-06-01T21:16:25.130
Link: CVE-2026-10284
No data.
OpenCVE Enrichment
Updated: 2026-06-01T21:30:26Z