CRITICAL
Sfwebservice
CVE published 2026-01-06
CVE-2025-39477
A Missing Authorization vulnerability in Sfwebservice InWave Jobs allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects InWave Jobs: from n/a through 3.5.8. The vulnerability has a critical CVSS score of 9.8, indicating a high severity. Defenders should prioritize verifying and updating InWave Jobs installations to prevent potential unauthorized access. The CVE record [truncated]