CVE-2026-33570: Subnet Solutions Powersystem Center 2020

Medium severity, CVSS 5.7. EPSS: 0.2% chance of exploitation in the next 30 days.

PowerSYSTEM Center REST API endpoint for devices allows a low privilege authenticated user to access information normally limited by operational permissions.

Affected products

  • Subnet Solutions Powersystem Center 2020: from 5.11, before 5.29 (fixed in 5.29)

Published 2026-05-12. Last modified 2026-06-17.