CVE-2026-21075CWE-939
CVE-2026-21075
published August 10, 2026
What it is
Improper authorization in handler for custom URL scheme in My Galaxy prior to version 6.3 allows remote attackers to access sensitive information.
The record
Technical detail
- CVSS
- 5.3 · NONE
- CVSS v4.0
- Not supplied
- EPSS
- 0.00360 · 29.0th percentile
- Weakness
- CWE-939 · Improper Authorization in Handler for Custom URL Scheme
- Published
- 2026-08-10T13:17Z
References (1)
EPSS history
Timeline