A hardcoded privileged ID within Lumisxp v15.0.x to v16.1.x allows attackers to bypass authentication and access internal pages and other sensitive information.Referenceshttps://gist.github.com/rodnt/f6b3a2ac875b8f13656063eefbfd9812http://seclists.org/fulldisclosure/2024/Jul/7