CVE-2026-39401 | jhuckaby Cronicle up to 0.9.110 update_event authorization (GHSA-5j3v-cq96-xw6v / EUVD-2026-19925)
A vulnerability was found in jhuckaby Cronicle up to 0.9.110. It has been rated as problematic. Impacted is the function update_event. The manipulation leads to missing authorization.
This vulnerability is listed as CVE-2026-39401. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.