By weakness (CWE)

CWE-213: related vulnerabilities

CVEs classified under CWE-213. Understanding the weakness class helps prioritize systemic fixes over one-off patches.

1 published vulnerability

  • CVE-2026-6280MEDIUM 6.5

    CVE-2026-6280 is a medium-severity vulnerability in Nomysem (a product of NOMYSOFT Informatics Education and Consulting Inc.) that allows users with valid login credentials to access sensitive information they should not be able to reach. The core issue is that the application's access control lists (ACLs)—the rules that define who can see what—are either misconfigured or not properly enforced. An authenticated attacker can bypass these restrictions to view confidential data without needing elevated privileges or user interaction.