What the vulnerability does
01Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in Vitalii iBryl Switch User ibryl-switch-user allows Authentication Bypass.This issue affects iBryl Switch User: from n/a through <= 1.0.1.
Explanation of Vulnerability in Simple Terms
02Summary
iBryl Switch User versions up to 1.0.1 contain an authentication bypass vulnerability. An attacker with low-level user privileges can read sensitive data, modify site content, or disrupt service without additional user interaction. The vulnerability affects the core authentication mechanism and may allow privilege escalation within the application.
What an attacker can do
03Attacker Capabilities
Read sensitive data, modify content, or disrupt service by bypassing authentication controls.
Potential impact on your site
04Site Impact
Authenticated users can access restricted functions and data beyond their assigned permissions.
Conditions required to exploit
05Prerequisites
Low-level user account on the site; network access to the application.
Key dates
06Disclosure timeline
October 23, 2024
CVE published
May 12, 2026
Record updated