Subscriptions
No data.
Tracking
Sign in to view the affected projects.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Sun, 22 Mar 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was detected in mickasmt next-saas-stripe-starter 1.0.0. Affected by this vulnerability is the function updateUserrole of the file actions/update-user-role.ts. The manipulation of the argument userId/role results in improper authorization. The attack may be launched remotely. | |
| Title | mickasmt next-saas-stripe-starter update-user-role.ts updateUserrole improper authorization | |
| Weaknesses | CWE-266 CWE-285 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-03-22T13:02:44.410Z
Reserved: 2026-03-21T16:49:01.510Z
Link: CVE-2026-4548
No data.
Status : Received
Published: 2026-03-22T14:16:34.840
Modified: 2026-03-22T14:16:34.840
Link: CVE-2026-4548
No data.
OpenCVE Enrichment
No data.