Severity:
CRITICAL RISK
(9.8)
Improper Authorization in PlaciPy Assessment Code
CVE-2026-25809
Analyzed
Vulnerability Type
Category:
Improper Authorization
CWE:
CWE-285
Impact:
Bypass of Assessment Time Controls and Unauthorized Code Execution Within the Evaluation Service
Severity:
CRITICAL RISK
(9.8)
CVSS Version:
3.1
Catch This CVE While Code Is Being Written
Detect vulnerable code directly in pull requests, so CVEs are fixed before merge.
Summary
Affected Context
Exploit Preconditions
Why This Happens
Potential Impact
General Mitigation Guidance
How Teams Detect Issues Like This
Frequently Asked Questions
Source
NDV
[FAQ]
Frequently Asked
Questions
What is Framer?
What is Framer?
What is Framer?
What is Framer?
What is Framer?
What is Framer?
What is Framer?
[GET STARTED]
START PENTEST
NO CC REQUIRED





