CVE-2026-5230
Received
Received - Intake
Improper Access Control in Pizzy Library
Publication date: 2026-06-15
Last updated on: 2026-06-15
Assigner: Computer Emergency Response Team of the Republic of Turkey
Description
Description
Improper Access Control, Missing Authorization vulnerability in MIA Technology Inc. Pizzy Library allows Exploiting Incorrectly Configured Access Control Security Levels.
This issue affects Pizzy Library: from 1.0.0.26250 before 1.3.9.26250.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| mia_technology_inc | pizzy_library | From 1.0.0.26250 (inc) to 1.3.9.26250 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-862 | The product does not perform an authorization check when an actor attempts to access a resource or perform an action. |
| CWE-284 | The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor. |