CVE-2026-3739 | suitenumerique messages 0.2.0 ThreadAccess serializers.py ThreadAccessSerializer improper authentication (GHSA-7476-6crq-4cw9 / EUVD-2026-10242)
A vulnerability labeled as critical has been found in suitenumerique messages 0.2.0. This issue affects the function ThreadAccessSerializer of the file src/backend/core/api/serializers.py of the component ThreadAccess. The manipulation results in improper authentication.
This vulnerability is identified as CVE-2026-3739. The attack can be executed remotely. Additionally, an exploit exists.
The affected component should be upgraded.