CVE-2026-5230
Last modified
CVE-2026-5230 is a high-severity vulnerability rated 7.1/10 on the CVSS scale. Improper Access Control, Missing Authorization vulnerability in MIA Technology Inc. Pizzy Library allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Pizzy Library: from 1.0.0.26250 before 1.3.9.26250.. EPSS estimates a 0.17% chance of exploitation in the next 30 days.
Description
Improper Access Control, Missing Authorization vulnerability in MIA Technology Inc. Pizzy Library allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Pizzy Library: from 1.0.0.26250 before 1.3.9.26250.
Metrics
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-5230?
How severe is CVE-2026-5230?
How do I fix CVE-2026-5230?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-5226The Optimole – Optimize Images in Real Time plugin for WordP…6.1
- CVE-2026-5228Improper Access Control, Missing Authorization vulnerability…8.8
- CVE-2026-5229The Form Notify plugin for WordPress is vulnerable to Authen…9.8
- CVE-2026-52295FFmpeg before 9.0 has an out-of-bounds read because the copi…2.9
- CVE-2026-52296FFmpeg before 9.0 has an out-of-bounds read because of missi…2.9
- CVE-2026-52297FFmpeg before 9.0 has an out-of-bounds read because there is…2.9
- CVE-2026-52307An authenticated stored cross-site scripting (XSS) vulnerabi…5.4
- CVE-2026-5231The WP Statistics plugin for WordPress is vulnerable to Stor…7.2
- CVE-2026-5233Improper Control of Interaction Frequency vulnerability in M…7.1
- CVE-2026-5234The LatePoint plugin for WordPress is vulnerable to Insecure…5.3
- CVE-2026-52348cool-admin-java 8.0.0 has a SQL injection vulnerability in t…9.8
- CVE-2026-52349Directory Traversal vulnerability in Menyoo 2.0 Versions bef…7.8
Are you affected by CVE-2026-5230?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
