Unrated severityNVD Advisory· Published Jul 9, 2026· Updated Jul 9, 2026
Missing authentication in SSH keys synchronization endpoint in Guardian/CMC before 26.2.0
CVE-2026-31983
Description
A Missing Authentication vulnerability was discovered in the SSH keys synchronization endpoint. An unauthenticated attacker can send a request to the SSH keys synchronization endpoint and obtain the list of users that have uploaded their public SSH keys, their groups, and the uploaded public SSH keys.
Affected products
1- Range: <26.2.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.