cleantalk
Vulnerabilities and Security Researches

MStore API, CVE-2026-54817

CVE, Research URL

CVE-2026-54817

Application

MStore API

Published on
Jun 17, 2026
Research Description
Authentication Bypass Using an Alternate Path or Channel vulnerability in FluxBuilder MStore API allows Password Recovery Exploitation. This issue affects MStore API: from n/a through 4.18.4.
Affected versions
max 4.19.0.
Status
vulnerable