
CVE-2026-94534 lamp-cloud through 5.10.0 fails to validate identity on PUT /anyone/baseInfo and /anyone/avatar, letting any authenticated user rewrite other users profiles. CVSS 7.1, no patch yet. Restrict access now. https://www.valtersit.com/cve/CVE-2026-94534 #CVE #infosec #lampcloud #CVEALERT #CVE #infosec #Linux #XSS #valtersit #snippet #SysAdmin #cybersecurity #devsecops #devops #developer #100daysofcode #git #github #gitlab #redteam #blueteam #ethicalhacker #cybersecurityawareness #cybersecuritynews #cybersecuritytips #python #hacker #kali #ubuntu #debian #docker
