CVE-2026-67310 | OpenRemote up to 1.26.2 AlarmResourceImpl AlarmResourceImpl.setAssetLinks resource injection

SecurityVulns

A vulnerability labeled as critical has been found in OpenRemote up to 1.26.2. This impacts the function AlarmResourceImpl.setAssetLinks of the component AlarmResourceImpl. Such manipulation leads to improper control of resource identifiers.

This vulnerability is uniquely identified as CVE-2026-67310. The attack can be launched remotely. No exploit exists.

The affected component should be upgraded.VulDB Recent EntriesRead More