HIGH 8.7 NVD
CVE-2026-46382
The Meeting Room Booking System (MRBS) is a PHP-based application for booking meeting rooms. Prior to version 1.12.2, a user-supplied private/local URI can be m
The Meeting Room Booking System (MRBS) is a PHP-based application for booking meeting rooms. Prior to version 1.12.2, a user-supplied private/local URI can be made to be fetched without checks. Version 1.12.2 contains a fix. No known workarounds are available.
References
- https://github.com/meeting-room-booking-system/mrbs-code/releases/tag/v1.12.2
- https://github.com/meeting-room-booking-system/mrbs-code/security/advisories/GHSA-gh77-mpc
This high severity vulnerability with a CVSS score of 8.7 was published on 2026-08-13 via NVD.
vulnfeed aggregates 10530 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.