CVE-2026-33162 | Craft CMS up to 5.9.13 move-to-section improper authorization
A vulnerability labeled as critical has been found in Craft CMS up to 5.9.13. Affected is an unknown function of the file /actions/entries/move-to-section. The manipulation results in improper authorization.
This vulnerability is cataloged as CVE-2026-33162. The attack may be launched remotely. There is no exploit available.
The affected component should be upgraded.