CVE-2026-38568 | HireFlow 1.2 /candidate/ access control
A vulnerability was found in HireFlow 1.2. It has been declared as critical. This impacts an unknown function of the file /candidate/. Such manipulation leads to improper access controls.
This vulnerability is referenced as CVE-2026-38568. It is possible to launch the attack remotely. No exploit is available.