CVE-2026-47094
Last modified
CVE-2026-47094 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. SIMAC MyPHR 1.1 contains an insecure direct object reference (IDOR) vulnerability that allows authenticated attackers to access and modify arbitrary employee records due to missing server-side ownership validation. Attackers can send a PUT request to the employee update endpoint with an arbitrary employee identifier and a controlled password value to take over target accounts, enumerate employee records, and retrieve sensitive personally identifiable information including private pay bulletins.. EPSS estimates a 0.51% chance of exploitation in the next 30 days.
Description
SIMAC MyPHR 1.1 contains an insecure direct object reference (IDOR) vulnerability that allows authenticated attackers to access and modify arbitrary employee records due to missing server-side ownership validation. Attackers can send a PUT request to the employee update endpoint with an arbitrary employee identifier and a controlled password value to take over target accounts, enumerate employee records, and retrieve sensitive personally identifiable information including private pay bulletins.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| SIMAC | MyPHR | 1.1 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-47094?
How severe is CVE-2026-47094?
How do I fix CVE-2026-47094?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-47089An issue was discovered in cyrus-imapd in Cyrus IMAP through…4.3
- CVE-2026-4709Incorrect boundary conditions in the Audio/Video: GMP compon…7.5
- CVE-2026-47090Claude HUD through 0.0.12, patched in commit 234d9aa, constr…4.6
- CVE-2026-47091Claude HUD through 0.0.12, patched in commit 234d9aa, contai…4.8
- CVE-2026-47092Claude HUD through 0.0.12, patched in commit 234d9aa, contai…7.8
- CVE-2026-47093Rejected reason: This CVE ID has been rejected or withdrawn …
- CVE-2026-47099TeleJSON prior to 6.0.0 contains a DOM-based cross-site scri…6.1
- CVE-2026-4710Incorrect boundary conditions in the Audio/Video component. …9.8
- CVE-2026-47100Funnel Builder for WooCommerce Checkout prior to 3.15.0.3 co…8.7
- CVE-2026-47101LiteLLM prior to 1.83.14 allows an authenticated internal_us…8.8
- CVE-2026-47102LiteLLM prior to 1.83.10 allows a user to modify their own u…8.8
- CVE-2026-47103Python StateMachine versions 3.0.0 before 3.2.0 contains a r…9.8
Are you affected by CVE-2026-47094?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
