CVE-2026-100298

High8.8Published on September 29, 2026

In Anjvision YSSD‑RTMP‑H5 firmware version 3.3.2.4, two user‑information endpoints can reveal sensitive device and account details under conditions that are not intended for normal operation.

CVSS score8.8 / 10CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness type (CWE)CWE-522

Related articles

This product uses the NVD API but is not endorsed or certified by the NVD.

CVE database