
🔴 CVE-2026-25197 - Critical A specific endpoint allows authenticated users to pivot to other user profiles by modifying the id number in the API call. https://www.thehackerwire.com/vulnerability/CVE-2026-25197/ https://t.co/zTfB4c2kmm
Post summary
The post announces CVE‑2026‑25197 as a critical flaw that permits an authenticated user to change the user ID in an API call to access other profiles.

