LOWVulnerability

CVE-2026-90456

An example environment-configuration file for a bundled inventory-management component ships with a fixed, publicly-known administrative password. A deployment that copies this example file into active configuration without running the setup routine that regenerates credentials will expose that component's administrative interface to anyone aware of the default value.

Properties

cve_id
CVE-2026-90456
signal_observed_at
2026-09-21T23:07:07+00:00
published_at
2026-09-11T22:16:47.993
last_modified
2026-09-18T19:39:09.490

Related Entities (2)

HAS_WEAKNESS (1)

[Weakness]Use of Default Credentials

DESCRIBED_BY (1)

[Source]NVD

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-90456 — Ninja Signal Threat Intelligence | Ninja Signal