A vulnerability classified as problematic was found in freescout-help-desk freescout up to 1.8.213. The affected element is an unknown function of the file /conversation/undo-reply/ of the component Conversation Handler. Executing a manipulation can lead to missing authorization.

This vulnerability is registered as CVE-2026-40592. It is possible to launch the attack remotely. No exploit is available.

Upgrading the affected component is advised.