CVE-2026-91107: CRITICAL auth bypass in openSIS-Classic 9.3 🛑. Teacher-role users can reset passwords of any staff via the staff_id parameter. No patch yet — restrict permissions & monitor password changes. https://radar.offseq.com/threat/cve-2026-91107-cwe-639-authorization-bypass-through-user-controlled-key-in-os4ed-opensis-classic-f7eb55a7a5a0f52d #OffSeq #Vulnerability #openSIS #CVE202691107
#opensis — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #opensis, aggregated by home.social.