[Critical] CVE-2026-53470 – A flaw was found in migration-planner. An authenticated attacker could exploit a...
Critical CVE-2026-53470 A flaw was found in migration-planner. An authenticated attacker could exploit an improper access control vulnerability in the `/api/v1/sources/{id}/image-url` endpoint. This flaw allows the attacker to bypass an ownership check and obtain presigned S3 URLs for Open Virtual...