PatchSiren

NitroPack CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM NitroPack CVE published 2026-04-08

CVE-2026-39669

A Missing Authorization vulnerability in NitroPack allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects NitroPack: from n/a through 1.19.3. The vulnerability has a CVSS score of 5.3 and is classified as MEDIUM severity. The CVE record was published on 2026-04-08T09:16:38.297Z and last modified on 2026-07-24T20:10:00.147Z. The vulnerability is related to a Missing Aut [truncated]