SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-65613

MEDIUM · CVSS 4.3 EPSS 0.26%

Source: NVD + CISA KEV + EPSS · Published 2026-08-21 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

The Webhook module in Apache CloudStack versions 4.20.0.0 to 4.20.3.0 and 4.21.0.0 to 4.22.1.0 is vulnerable to unauthorized exposure of sensitive information during the listing and deletion of deliveries. This could allow malicious actors to access confidential data, posing a significant risk to organizations using these affected versions. Users should prioritize upgrading to versions 4.20.3.1 or 4.22.1.1 or later to mitigate this vulnerability.

CVE
CVE-2026-65613
Severity
MEDIUM
CVSS
4.3
EPSS
0.26%
Apache

Original NVD Description

Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache CloudStack's Webhook module while listing and deleting deliveries. This issue affects Apache CloudStack: from 4.20.0.0 through 4.20.3.0 and from 4.21.0.0 through 4.22.1.0. Users are recommended to upgrade to version 4.20.3.1 or 4.22.1.1 or later, which fixes the issue.

Related CVEs

Other vulnerabilities affecting the same vendor(s)