CVE-2026-80254

Summary

Authorization bypass through user-controlled key issue exists in ShizenBox2 (edge-app). If exploited, an attacker who can log in to the product may change the other user's password.

Affected Software

VendorProductVersion RangeStatus
Shizen Connect Inc.ShizenBox2 (edge-app)0 <= v3.1.15affected

Weaknesses

  • CWE-639: Authorization bypass through user-controlled key

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References