SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-6280

MEDIUM · CVSS 6.5 EPSS 0.23%

Source: NVD + CISA KEV + EPSS · Published 2026-07-08 · Last synced 2026-08-07

CyberRota Analysis

AI-Generated

Nomysem software from NOMYSOFT Informatics Education and Consulting Inc. has a vulnerability that allows unauthorized access to sensitive functionalities due to improperly configured access control lists (ACLs). This could lead to exposure of sensitive information, making it critical for organizations using Nomysem to prioritize remediation efforts. Given the vendor's lack of response regarding this issue, users should assess their systems for potential risks immediately.

CVE
CVE-2026-6280
Severity
MEDIUM
CVSS
6.5
EPSS
0.23%

Original NVD Description

Exposure of sensitive information due to incompatible policies vulnerability in NOMYSOFT Informatics Education and Consulting Inc. Nomysem allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Nomysem: through 08072026. NOTE: The vendor was contacted early about this disclosure but did not respond in any way.