CVE-2026-106502 | Backstage up to 4.0.x plugin-scaffolder-backend information disclosure

SecurityVulns

A vulnerability identified as problematic has been detected in Backstage up to 4.0.x. Impacted is an unknown function of the component plugin-scaffolder-backend. The manipulation leads to information disclosure.

This vulnerability is referenced as CVE-2026-106502. Remote exploitation of the attack is possible. No exploit is available.

You should upgrade the affected component.VulDB Recent EntriesRead More