CVE-2026-39347
Gravedad CVSS v4.0:
MEDIA
Tipo:
CWE-285
Autorización incorrecta
Fecha de publicación:
07/04/2026
Última modificación:
07/04/2026
Descripción
*** Pendiente de traducción *** OrangeHRM is a comprehensive human resource management (HRM) system. From 5.0 to 5.8, OrangeHRM Open Source accepts changes to self-appraisal submissions for administrator users after those submissions have been marked completed, breaking integrity of finalized appraisal records. This vulnerability is fixed in 5.8.1.
Impacto
Puntuación base 4.0
5.10
Gravedad 4.0
MEDIA



