Subscriber Broken Access Control in OwnerRez API <= 1.2.6 versions.
CVE-2026-81758 at the National Vulnerability Database