CVE-2026-10282

Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
01/06/2026
Last modified:
01/06/2026

Description

A security vulnerability has been detected in Bottelet DaybydayCRM up to 2.2.1. This impacts the function view of the file app/Http/Controllers/DocumentsController.php. Such manipulation leads to improper authorization. The attack may be launched remotely. It is best practice to apply a patch to resolve this issue.