CVE-2026-30689
UNKNOWN
NVD
CVSS Score
0
Severity
UNKNOWN
Published
Mar 27, 2026
Vendor
unknown
Description
A blog.admin v.8.0 and before system's getinfobytoken API interface contains an improper access control which leads to sensitive data exposure. Unauthorized parties can obtain sensitive administrator account information via a valid token, threatening system security.