
CVE-2026-26289 PowerSYSTEM Center REST API endpoint for device account export allows an authenticated user with limited permissions to expose sensitive information normally restrict… https://www.cve.org/CVERecord?id=CVE-2026-26289
Post summary
The post announces a new CVE—PowerSYSTEM Center REST API export flaw that leaks sensitive data to users with limited permissions—without providing evidence of exploitation, patches, or a proof‑of‑concept.
