CVE-2026-97878 | zhistaredu StarTraining up to 3.8.1 Druid Console /druid/index.html anonymous missing authentication
A vulnerability was found in zhistaredu StarTraining up to 3.8.1. It has been declared as critical. Impacted is the function anonymous of the file /druid/index.html of the component Druid Console. Such manipulation leads to missing authentication.
This vulnerability is listed as CVE-2026-97878. The attack may be performed from remote. In addition, an exploit is available.
The vendor was contacted early about this disclosure but did not respond in any way.VulDB Recent EntriesRead More