CVE-2026-69091
HIGH
NVD
CVSS Score
7.5
Severity
HIGH
Published
Aug 03, 2026
Vendor
unknown
Description
Admidio before 5.0.11 contains an authentication bypass vulnerability in the forum module when configured in login-only mode. The access control logic in modules/forum.php fails to validate the login-only configuration state, allowing unauthenticated attackers to read forum topics and posts by directly accessing the module with read-only parameters.