CVE-2026-28217 | hoppscotch 2023.4.5/2023.12.6 userCollection data authorization (GHSA-m5pg-r4jp-qq75)
A vulnerability labeled as problematic has been found in hoppscotch 2023.4.5/2023.12.6. Affected by this vulnerability is the function userCollection. Executing a manipulation of the argument data can lead to missing authorization.
This vulnerability is handled as CVE-2026-28217. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.