


Perceptive Security
SOC/SIEM Consultancy

Authorization bypass through User-Controlled key vulnerability in Menulux Software Inc. Mobile App allows Software Integrity Attack.
This issue affects Mobile …
Published:
2 augustus 2026 om 22:00:00
Alert date:
3 augustus 2026 om 14:01:40
Source:
nvd.nist.gov
Mobile & IoT, Identity & Access
CVE-2026-2346 describes an authorization bypass through a user-controlled key vulnerability in Menulux Software Inc.'s Mobile App. The vulnerability allows a Software Integrity Attack by enabling attackers to manipulate user-controlled keys to bypass authorization mechanisms. All versions of the Mobile App through 12.05.2026 are affected. The vulnerability was disclosed via the NVD (National Vulnerability Database) and a Turkish cybersecurity advisory portal. This type of vulnerability can allow unauthorized access to protected resources or functionality within the mobile application. Exploitation could compromise the integrity of the software and the data it handles.
Technical details
Mitigation steps:
Affected products:
Menulux Software Inc. Mobile App
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-2346
https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0729
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
