CVE-2026-59507 CRITICAL

CVE-2026-59507: Priority – CWE-798: Use of Hard-coded Credentials CWE-200: Exposure of Sensitive Information to an Unauthorized Actor CWE-284: Improper Access Control

Vendor Priority
Product Portal Generator addon to Priority ERP (developed by Soft Solutions)
Weakness CWE-798 · Hardcoded credentials
Published August 13, 2026
Last update August 13, 2026

CVSS base score

9.3/10
Attack vector Network
Attack complexity Low
Privileges required None
User interaction None
Confidentiality High
Integrity Low

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N