CVE-2026-68953
The affected products are vulnerable to an authentication bypass that allows unauthenticated remote attackers to disclose sensitive device information, including administrator credentials in plaintext, by sending crafted HTTP(S) requests.
- Published Sep 15, 2026
- CVSS 7.1 high
- 0.6% chance of exploitation in the next 30 days (EPSS)