CVE-2026-11340: Authorization Bypass in HAVELSAN's Open Source Project Liman MYS
Missing Authorization vulnerability in HAVELSAN Inc. Liman MYS allows Accessing Functionality Not Properly Constrained by ACLs.
This issue affects Liman MYS: before release.Master.1107.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
HAVELSAN Liman MYSto a version that resolves this vulnerability.Fixed in release.Master.1107
Event History
Frequently Asked Questions
What is the severity of CVE-2026-11340?
The severity of CVE-2026-11340 is assessed as high, with a score of 8.3.
How do I fix CVE-2026-11340?
To fix CVE-2026-11340, ensure proper Access Control Lists (ACLs) are implemented and restrict unauthorized functionality access.
What are the potential impacts of CVE-2026-11340?
CVE-2026-11340 can lead to unauthorized access to restricted functionality, compromising data integrity and availability.
Is CVE-2026-11340 present in older versions of Liman MYS?
Yes, CVE-2026-11340 affects Liman MYS before release Master.1107.
Who is affected by CVE-2026-11340?
Organizations using HAVELSAN's Liman MYS prior to release Master.1107 are vulnerable to CVE-2026-11340.