A vulnerability, which was classified as problematic, was found in Saleor up to 3.20.109/3.21.44/3.22.28. This issue affects the function order. Such manipulation leads to authorization bypass.

This vulnerability is traded as CVE-2026-24136. The attack may be launched remotely. There is no exploit available.

You should upgrade the affected component.