CVE-2026-59233 (GHSA-4FXP-2M36-QV64)
2026-08-10
roskus/prospero-flow-crm
Missing Authorization in the permission management component in Roskus Prospero Flow CRM before 5.2.1 allows any authenticated user to grant any role, includ...
Authentication & access control · Incomplete remediation
See root cause and fix →