CVE-2026-89013: Dolibarr < 24.0.0 - Authorization Bypass via hashp Parameter

HoneyLabs honeypots recorded 10 probes matching CVE-2026-89013 from 7 distinct source IP addresses in the last 7 days. Severity is rated high.

Request paths that identify it

  • /document.php

Addresses probing it

Source IPProbesNetworkCountry
35.187.246.1473Google LLCSingapore
136.90.54.1312Google LLCUnited States
207.175.110.401Google LLCBelgium
93.123.109.2141Techoff Srv LimitedBulgaria
34.95.4.1981Google LLCCanada
34.89.245.2281Google LLCGermany
34.124.215.331Google LLCSingapore

Networks it comes from

ASNOrganisationProbesSource IPs
AS396982Google LLC96
AS48090Techoff Srv Limited11

Captured requests

  • /document.php?modulepart=project&file=../../../../../../../etc/passwd
  • /document.php?modulepart=systemtools&file=../conf/conf.php&hashp=shared

CVE report

CVE report

Open a specific CVE from the CVE tracker.