PT-2026-30838 · Unknown · Runzero Platform

·

CVE-2026-5375

·

Published

2026-04-07

·

Updated

2026-04-08

CVSS v3.1

2.7

Low

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions runZero Platform versions prior to 4.0.260203.0
Description A flaw exists that may allow a user with existing credentials to view sensitive information through an API response. This is categorized as CWE-200: Exposure of Sensitive Information to an Unauthorized Actor.
Recommendations Update to version 4.0.260203.0 or later.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-5375

Affected Products

Runzero Platform