A high-severity vulnerability was found in Control iD iDSecure versions prior to 4.8.3.0, which could lead to an unauthenticated Denial of Service (DoS) attack. The vulnerability exists in the /api/dguardintegration/dguardVersion endpoint, where an unhandled null reference exception occurs when the DGuard integration login state is unset. This exception is thrown from an asynchronous method that returns v [truncated]
CVE-2026-92625 is a high-severity vulnerability affecting Control iD iDSecure versions prior to 4.8.3.0, allowing unauthenticated Denial of Service attacks via the /api/license/restartService endpoint. This vulnerability can be exploited by an unauthenticated remote attacker to hold the service in a continuous restart cycle, rendering it unavailable. Defenders should assess exposure and potential impact, [truncated]