CVE-2026-32103 | withstudiocms up to 0.4.2 create-reset-link authorization (GHSA-h7vr-cg25-jf8c)
A vulnerability has been found in withstudiocms studiocms up to 0.4.2 and classified as problematic. This affects an unknown part of the file /studiocms_api/dashboard/create-reset-link. This manipulation causes authorization bypass.
This vulnerability is registered as CVE-2026-32103. Remote exploitation of the attack is possible. No exploit is available.
The affected component should be upgraded.