References https://www.twcert.org.tw/tw/cp-132-6681-e9650-1.html https://vuldb.com/vuln/213433 https://nvd.nist.gov/vuln/detail/CVE-2022-38122 https://www.twcert.org.tw/newepaper/cp-151-6681-e9650-3.html https://cwe.mitre.org/data/definitions/319.html https://www.cvedetails.com/product/123403/Upspowercom-Upsmon-Pro.html?vendor_id=28669
Related VulnerabilitiesPoCCVE-2026-11801: WPAdverts <= 2.3.2 - Information DisclosurePoCCVE-2026-10768: Drupal LocalGov Workflows < 1.6.0 - Information DisclosurePoCCVE-2026-27796: Homarr < 1.54.0 - Information DisclosurePoCCVE-2026-1980: WPBookit <= 1.0.8 - Unauthenticated Customer Information DisclosurePoCCVE-2026-8386: WP Go Maps < 10.0.10 - Unauthenticated Marker Information DisclosurePoCCVE-2026-22778: vLLM 0.8.3 - 0.14.0 - Information DisclosurePoCCVE-2026-8383: LearnPress < 4.3.7 - Information DisclosurePoCweaver-getemdslist-disclosure: Weaver E-cology getEmDsList Sensitive Information DisclosurePoCCVE-2026-54236: vLLM <= 0.23.0 - Anthropic Router Heap Address Information LeakPoCCVE-2024-6569: Campaign Monitor for WordPress - Information DisclosurePoCCVE-2026-27833: Piwigo < 16.3.0 - Unauthenticated Information Disclosure via History APIPoCCVE-2026-40151: PraisonAI AgentOS - Information DisclosurePoCCVE-2026-45397: Open WebUI < 0.9.5 - Information Disclosure