CVE-2026-28186: Themefic Travelfic Toolkit

High severity, CVSS 8.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Subscriber Broken Access Control in Travelfic Toolkit <= 1.5.1 versions.

Affected products

  • Themefic Travelfic Toolkit: up to and including 1.5.1

Published 2026-08-13. Last modified 2026-08-14.