Security Advisory

CVE-2026-5380

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-04-07 14:12:05
Last updated 2026-04-07 15:03:47
Assigner runZero
CVSS score 5.3
State PUBLISHED

Description

An issue that could allow an authorized user to view the clear-text secrets for a subset of credential types and fields has been resolved. This is an instance of CWE-522: Insufficiently Protected Credentials, and has an estimated CVSS score of CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N (5.3 Medium). This issue was fixed in version 4.0.260204.2 of the runZero Platform.