A vulnerability was found in CSZ CMS up to 1.3.2. It has been declared as problematic. The affected element is an unknown function of the component Admin Form-Submission Viewer. The manipulation results in improper access controls.

This vulnerability is identified as CVE-2026-72601. The attack can be executed remotely. There is not any exploit available.