CVE-2026-63685
UNKNOWN
NVD
CVSS Score
0
Severity
UNKNOWN
Published
Jul 22, 2026
Vendor
unknown
Description
Administrator routes and replacement requests did not consistently require Super User permission and a valid token. An unauthorized backend user or CSRF attack could perform database replacements, potentially causing major data corruption or site compromise.