CVE-2026-107450 - Stump Smart List Unauthorized Access Vulnerability
CVE ID :CVE-2026-107450 Published : Oct. 8, 2026, 4:44 a.m. | 44 minutes ago Description :In Stump through 0.1.10, the updateSmartList and deleteSmartList GraphQL mutations (crates/graphql/src/mutation/smart_lists.rs) depend only on the shared AccessSmartList permission and resolve the target...