CVE-2026-30994

Incorrect access control in the config.php component of Slah v1.5.0 and below allows unauthenticated attackers to access sensitive information, including active session credentials.
Configurations

No configuration.

History

15 Apr 2026, 19:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
CWE CWE-284

15 Apr 2026, 17:17

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-15 17:17

Updated : 2026-06-17 10:33


NVD link : CVE-2026-30994

Mitre link : CVE-2026-30994

CVE.ORG link : CVE-2026-30994


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control