Insecure Direct Object Reference (IDOR) (CWE-639)FREE
Academy
AcademyIDOR leads Unauthorized Staff Member Removal via Insufficient Authorization Checks
Missing authorization checks allow unauthorized users to remove staff members from accounts they do not own, leading to potential disruption and abuse.
167
Mar 17, 2026
CVSS6.5
€470