{"id":"CVE-2018-12642","aliases":["GHSA-r6g8-mq9v-cgp4"],"url":"https://o3.security/vulnerability/CVE-2018-12642","summary":"Froxlor Incorrect Access Control","details":"Froxlor through 0.9.39.5 has Incorrect Access Control for tickets not owned by the current user.","published":"2018-06-22T12:29:00.273Z","modified":"2026-08-07T14:49:22.180277Z","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"},"epss":null,"cisaKev":null,"exploitsKnown":0,"affectedPackages":[{"ecosystem":"Packagist","name":"froxlor/froxlor","fixedVersion":"0.9.40"}],"fix":{"url":"https://github.com/Froxlor/Froxlor/commit/aa881560cc996c38cbf8c20ee62854e27f72c73c","label":"Froxlor/Froxlor@aa88156"},"references":[{"type":"FIX","url":"https://github.com/Froxlor/Froxlor/commit/aa881560cc996c38cbf8c20ee62854e27f72c73c"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-07T14:49:22.180277Z"}}