CVE-2026-27012 | devcode-it openstamanager up to 2.9.8 actions.php missing authentication (GHSA-247v-7cw6-q57v)
A vulnerability classified as critical was found in devcode-it openstamanager up to 2.9.8. This affects an unknown part of the file modules/utenti/actions.php. Such manipulation leads to missing authentication.
This vulnerability is traded as CVE-2026-27012. The attack may be launched remotely. There is no exploit available.