CVE-2026-5599

Publication date

2026-04-05 12:36:27

Family

rami.io

State

PUBLISHED

Description

A user with API access and "manage users" permission in any venueless world is able to trigger deletion of user accounts in other worlds.