AUGUST 27, 2026
Live Feed
Back to database
Case File

CVE-2026-48210

MEDIUM · CVSS 5.7 EPSS 0.25%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-05-31 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.7. See the original NVD description below for full technical details.

CVE
CVE-2026-48210
Severity
MEDIUM
CVSS
5.7
EPSS
0.25%

Original NVD Description

An improper default configuration in OTRS 2026.3.1 causes ticket article forwarding actions to enforce the “Is visible for customer” flag by default and prevent users from disabling it via the UI. This leads to unintended exposure of internal ticket information to the External Frontend This issue affects OTRS 2026.3.1

Related CVEs

Other vulnerabilities affecting the same vendor(s)