CVE-2026-53901 - Cerebrate before v1.37 allows mass assignment of record identifiers during object creation
CVE ID :CVE-2026-53901 Published : June 11, 2026, 7:31 a.m. | 1 hour, 32 minutes ago Description :Cerebrate before version 1.37 contains a mass-assignment vulnerability in the generic CRUD add path. The add() handler attempted to remove an attacker-supplied id from $params before normalizing...