{"id":"CVE-2026-46382","aliases":[],"url":"https://o3.security/vulnerability/CVE-2026-46382","summary":"The Meeting Room Booking System (MRBS) is a PHP-based application for booking meeting rooms. Prior to version 1.12.2, a user-supplied private/local URI can be made to be fetched without…","details":"The Meeting Room Booking System (MRBS) is a PHP-based application for booking meeting rooms. Prior to version 1.12.2, a user-supplied private/local URI can be made to be fetched without checks. Version 1.12.2 contains a fix. No known workarounds are available.","published":"2026-08-13T00:17:32.090","modified":"2026-08-13T00:17:32.090","cvss":null,"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[],"fix":null,"references":[{"type":"WEB","url":"https://github.com/meeting-room-booking-system/mrbs-code/releases/tag/v1.12.2"},{"type":"WEB","url":"https://github.com/meeting-room-booking-system/mrbs-code/security/advisories/GHSA-gh77-mpcm-f8r3"}],"provenance":{"sources":["OSV.dev","NVD","FIRST.org (EPSS)"],"lastVerified":"2026-08-13T00:17:32.090"}}