| Summary | Missing authentication in the KVM key download endpoint could allow an unauthenticated attacker with knowledge of the exposed URL to retrieve sensitive keys, potentially leading to loss of confidentiality. |
|---|---|
| Publication Date | May 15, 2026, 12:16 a.m. |
| Registration Date | May 15, 2026, 4:24 a.m. |
| Last Update | May 15, 2026, 12:53 a.m. |