CVE-2026-59155 | nezhahq Nezha up to 2.2.4 DDNS/Notification /api/v1/ddns listNotification credentials missing encryption
A vulnerability was found in nezhahq Nezha up to 2.2.4. It has been declared as problematic. Impacted is the function listNotification of the file /api/v1/ddns of the component DDNS/Notification Handler. The manipulation of the argument credentials results in missing encryption of sensitive data.
This vulnerability is reported as CVE-2026-59155. The attack can be launched remotely. No exploit exists.VulDB Recent EntriesRead More