A vulnerability was found in Ehco1996 django-sspanel up to 2023.12.26 and classified as critical. This affects the function
TicketDetailView of the file apps/sspanel/views.py of the component Support Ticket Handler. Executing a manipulation can lead to authorization bypass. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is handled as CVE-2026-18818. The attack can be executed remotely. There is not any exploit available.
The vendor was contacted early about this disclosure but did not respond in any way.