High severity8.8NVD Advisory· Published Aug 28, 2026· Updated Aug 31, 2026
CVE-2026-18965
CVE-2026-18965
Description
PayRange API is missing proper authorization on management endpoints, which allows verbose details of every device on the PayRange network to be publicly accessible, with or without an account.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
1- PayRange APICISA ICS Advisories