
CVE-2026-42205 Avo is a framework to create admin panels for Ruby on Rails apps. Prior to version 3.31.2, a broken access control vulnerability was identified in the ActionsControll… https://www.cve.org/CVERecord?id=CVE-2026-42205
Post summary
An advisory announces a broken access control vulnerability in the Avo Rails admin‑panel framework affecting versions before 3.31.2.

