CVE-2026-42540
MEDIUM
NVD
CVSS Score
4.3
Severity
MEDIUM
Published
Jun 04, 2026
Vendor
unknown
Description
IRIS is a web collaborative platform that helps incident responders share technical details during investigations. Versions prior to 2.4.28 allow a user to alter values in the database via manipulated API requests. Version 2.4.28 contains a patch.