CVE-2026-45083 | intranda goobi-viewer-core up to 26.04.0 Goobi Viewer REST Endpoint /api/v1/index/stream missing authentication (GHSA-2rgp-f66f-4499)

SecurityVulns

A vulnerability categorized as critical has been discovered in intranda goobi-viewer-core up to 26.04.0. Affected by this vulnerability is an unknown functionality of the file /api/v1/index/stream of the component Goobi Viewer REST Endpoint. Such manipulation leads to missing authentication.

This vulnerability is uniquely identified as CVE-2026-45083. The attack can be launched remotely. No exploit exists.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More