CVE-2026-10521
Severity CVSS v4.0:
HIGH
Type:
CWE-425
Direct Request ('Forced Browsing')
Publication date:
23/06/2026
Last modified:
23/06/2026
Description
An high privileged remote attacker can access a hidden configuration method, that should not be accessible by any user, to modify critical program parameters. This can result in a total loss of confidentiality, integrity and availability.
Impact
Base Score 4.0
8.60
Severity 4.0
HIGH
Base Score 3.x
7.20
Severity 3.x
HIGH



