CVE-2026-5228

HIGH

Improper Access Control in Kurt Software Studio's WriteUp Mobile App

Title source: cna
STIX 2.1

Description

Improper Access Control, Missing Authorization vulnerability in Kurt Software Studio WriteUp Mobile App allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects WriteUp Mobile App: from 1.3.0 through 04062026.

References (1)

Core 1
Core References

Scores

CVSS v3 8.8
EPSS 0.0024
EPSS Percentile 15.4%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact total

Details

CWE
CWE-284 CWE-862
Status published
Products (1)
Kurt Software Studio/WriteUp Mobile App 1.3.0 - 04062026
Published Jun 04, 2026
Tracked Since Jun 04, 2026