CVE-2026-49952 is an authentication bypass vulnerability in Discuz! X5.0 versions 20260320 through 20260501, allowing unauthenticated remote attackers to gain unauthorized access to database backup and restore functionality by exploiting a shared cryptographic key, leading to potential data exfiltration and user impersonation.
PoC
Discuz! X5.0 +1
authentication-bypass
web-vulnerability
cve
discuz
data-exfiltration
2r
6t
1c
1i
updated