HIGH 7.1 NVD
CVE-2026-13229
Zammad 7.1.0 contains an authenticated improper authorization vulnerability in the ticket article attachment cloning endpoint.
Zammad 7.1.0 contains an authenticated improper authorization vulnerability in the ticket article attachment cloning endpoint.
References
- https://fluidattacks.com/es/advisories/chicago
- https://github.com/zammad/zammad/releases/tag/7.1.2
- https://github.com/zammad/zammad/security/advisories/GHSA-374g-4f73-g7m7
This high severity vulnerability with a CVSS score of 7.1 was published on 2026-08-04 via NVD.
vulnfeed aggregates 9214 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.