VYPR

acm-search-v2-api-rhel9

by Red Hat

CVEs (1)

  • CVE-2026-71468MedAug 11, 2026
    risk 0.34cvss 5.3epss

    A flaw was found in acm-search-v2-api-rhel9. When the `getFederationConfig` function refreshes its cache, it improperly reuses a user's bearer token for all subsequent federated requests until the cache expires. This allows other authenticated users to gain unauthorized access…