Pending AI Enrichment

This vulnerability was recently detected via the live feed and has not yet been processed by Precogs AI's context enrichment engine. The data below represents raw telemetric data.

RAW NVD TELEMETRY

CVE-2026-5842

CVSS Base Score
7.3 HIGH
Primary Weakness
CWE-285
Published Date
Apr 9, 2026
Data Source
NVD API

A security vulnerability has been detected in decolua 9router up to 0.3.47. The impacted element is an unknown function of the file /api of the component Administrative API Endpoint. The manipulation leads to authorization bypass. The attack is possible to be carried out remotely. The exploit has been disclosed publicly and may be used. Upgrading to version 0.3.75 is sufficient to resolve this issue. It is suggested to upgrade the affected component.

Related Vulnerabilitiesvia CWE-285

CVE-2026-340515.4 MEDIUM

Broken Access Control in OpenEMR Import/Export functionality before 8.0.0.3. Unauthorized users can perform direct requests to trigger data extraction and manipulation despite UI restrictions.

CWE-285
CVE-2026-340567.7 HIGH

Broken Access Control in OpenEMR up to 8.0.0.3 allows low-privilege users to view and download eRx error logs. This flaw compromises confidentiality by exposing sensitive patient information.

CWE-285
CVE-2026-331869.1 CRITICAL

gRPC-Go is the Go language implementation of gRPC.

CWE-285
CVE-2026-318368.1 HIGH

Checkmate is an open-source, self-hosted tool designed to track and monitor server hardware, uptime, response times, and incidents in real-time with beautiful visualizations.

CWE-269CWE-285
CVE-2026-318690 UNKNOWN

Discourse is an open-source discussion platform.

CWE-200CWE-285CWE-639
CVE-2026-326927.6 HIGH

An authorization bypass vulnerability in the Vault secrets back-end implementation of Juju versions 3.

CWE-285