CVE-2026-27490
EUVD-2026-6412521.08.2026, 20:16
Combodo iTop is a web based IT service management tool. Prior to 3.2.3, inline images that are accessible without being authenticated are protected by a weak 24-bit pseudo-random secret. This issue has been fixed in version 3.2.3.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| combodo | itop | 𝑥 < 3.2.3 | CNA |
Common Weakness Enumeration