CVE-2026-56237 - Capgo - Unauthenticated API Key Generation via Client-Side Parameter Manipulation
CVE ID :CVE-2026-56237 Published : June 24, 2026, 11:53 a.m. | 1 hour, 17 minutes ago Description :Capgo before 12.128.2 contains a broken authentication vulnerability in its API key generation mechanism. API keys are exposed in frontend requests, and the backend fails to validate that keys...