CVE-2026-32106 | withstudiocms up to 0.4.2 createUser Endpoint privileges management (GHSA-wj56-g96r-673q)
A vulnerability labeled as critical has been found in withstudiocms studiocms up to 0.4.2. This issue affects some unknown processing of the component createUser Endpoint. The manipulation results in improper privilege management.
This vulnerability is known as CVE-2026-32106. It is possible to launch the attack remotely. No exploit is available.
The affected component should be upgraded.