CVE-2026-1670

Publication date

2026-02-17 22:56:00

Family

icscert

State

PUBLISHED

Description

The affected products are vulnerable to an unauthenticated API endpoint exposure, which may allow an attacker to remotely change the "forgot password" recovery email address.