cvedb.io
CVE-2026-32736
MEDIUM · CVSS 4.3
EPSS exploitation probability: 0%
Published 2026-03-18T23:17:29.883 · Last modified 2026-06-17T10:36:17.823

Summary

The Hytale Modding Wiki is a free service for Hytale mods to host their documentation & wikis. An Insecure Direct Object Reference (IDOR) vulnerability in versions of the wiki prior to 1.0.0 exposes mod authors' personal information - including full names and email addresses - to any authenticated user who visits a mod page. Any user who creates an account can access sensitive author details by simply navigating to a mod's page via its slug. Version 1.0.0 fixes the issue.

Affected products

hytalemodding — wiki

Does this affect you?

Add your gear to cvedb and we'll alert you only when hytalemodding ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.