Vulnerability Description
OPEXUS eCASE Audit allows an authenticated attacker to modify client-side JavaScript or craft HTTP requests to access functions or buttons that have been disabled or blocked by an administrator. Fixed in eCASE Platform 11.14.1.0.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Opexustech | Ecase Audit | < 11.14.1.0 |
Related Weaknesses (CWE)
References
- https://docs.opexustech.com/docs/eCase/11.14.X/eCASE_Release_Notes_11.14.1.0.pdfRelease Notes
- https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2025/Broken Link
- https://www.cve.org/CVERecord?id=CVE-2026-22230Third Party Advisory
FAQ
What is CVE-2026-22230?
CVE-2026-22230 is a vulnerability with a CVSS score of 7.6 (HIGH). OPEXUS eCASE Audit allows an authenticated attacker to modify client-side JavaScript or craft HTTP requests to access functions or buttons that have been disabled or blocked by an administrator. Fixed...
How severe is CVE-2026-22230?
CVE-2026-22230 has been rated HIGH with a CVSS base score of 7.6/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-22230?
Check the references section above for vendor advisories and patch information. Affected products include: Opexustech Ecase Audit.