CVE-2026-26289: Subnet Solutions Powersystem Center 2020

High severity, CVSS 8.2. EPSS: 0.2% chance of exploitation in the next 30 days.

PowerSYSTEM Center REST API endpoint for device account export allows an authenticated user with limited permissions to expose sensitive information normally restricted to administrative permissions only.

Affected products

Published 2026-05-12. Last modified 2026-06-17.