CVE-2026-7189

Summary

Insertion of sensitive information into sent data vulnerability in Proliz Software Ltd. Co. Proliz's OBS allows Accessing Functionality Not Properly Constrained by ACLs.

This issue affects Proliz's OBS: before v3.6.0.

Affected Software

VendorProductVersion RangeStatus
Proliz Software Ltd. Co.Proliz’s OBS0 < v3.6.0affected

Weaknesses

  • CWE-201: CWE-201 Insertion of sensitive information into sent data

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References