Vulnerability Description
A vulnerability in the foreUP customer REST API allows any authenticated, low-privilege customer to access an endpoint that returns the records of other users without checking that the caller owns the data associated with that record.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-15658?
CVE-2026-15658 is a vulnerability with a CVSS score of 8.1 (HIGH). A vulnerability in the foreUP customer REST API allows any authenticated, low-privilege customer to access an endpoint that returns the records of other users without checking that the caller owns th...
How severe is CVE-2026-15658?
CVE-2026-15658 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-15658?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.