ERP is a free and open source Enterprise Resource Planning tool. In versions up to 15.98.0 and 16.0.0-rc.1 and through 16.6.0, certain endpoints lacked access validation which allowed for unauthorized document access. This issue has been fixed in versions 15.98.1 and 16.6.1.
Metrics
Affected Vendors & Products
References
History
Sat, 21 Feb 2026 06:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ERP is a free and open source Enterprise Resource Planning tool. In versions up to 15.98.0 and 16.0.0-rc.1 and through 16.6.0, certain endpoints lacked access validation which allowed for unauthorized document access. This issue has been fixed in versions 15.98.1 and 16.6.1. | |
| Title | ERP: Document access through endpoints due to missing validation | |
| Weaknesses | CWE-284 CWE-306 CWE-862 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-02-21T06:38:11.220Z
Reserved: 2026-02-19T17:25:31.101Z
Link: CVE-2026-27471
No data.
Status : Received
Published: 2026-02-21T07:16:13.580
Modified: 2026-02-21T07:16:13.580
Link: CVE-2026-27471
No data.
OpenCVE Enrichment
No data.