A vulnerability was found in oban-bg oban_web up to 2.12.4 and classified as critical. This affects the function handle_event. Executing a manipulation can lead to missing authorization.

The identification of this vulnerability is CVE-2026-48592. The attack may be launched remotely. There is no exploit available.

It is suggested to upgrade the affected component.