Loading market data...
← Back to CVE feed

CVE-2026-105030

MEDIUM CVSS 5.3 View on NVD ↗

Description

Kener 4.0.0 before 4.1.6 contains an information disclosure vulnerability that allows unauthenticated attackers to retrieve hidden or inactive monitor data by querying dashboard API handlers lacking visibility filters. Attackers can supply a known or guessed monitor tag to endpoints such as monitor-bar and monitor-latency-chart to obtain names, descriptions, status, uptime history and latency.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Published: Oct 03, 2026 00:16 UTC Modified: Oct 03, 2026 00:16 UTC