CVE-2026-26289

PowerSYSTEM Center REST API endpoint for device account export allows an authenticated user with limited permissions to expose sensitive information normally restricted to administrative permissions only.
Configurations

No configuration.

History

12 May 2026, 22:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-12 22:16

Updated : 2026-05-13 15:52


NVD link : CVE-2026-26289

Mitre link : CVE-2026-26289

CVE.ORG link : CVE-2026-26289


JSON object : View

Products Affected

No product.

CWE
CWE-863

Incorrect Authorization