A vulnerability categorized as problematic has been discovered in Emlog up to 2.6.26. This affects the function execute_tool of the file admin/ai.php of the component AI Assistant. Such manipulation of the argument confirm_code leads to cross-site request forgery.

This vulnerability is uniquely identified as CVE-2026-73847. The attack can be launched remotely. No exploit exists.