What is CVE-2026-66154?
CVE-2026-66154 is an insufficient certificate validation vulnerability in a privileged communication workflow affecting GMS application version 9.5.1 (Build 9510.1044) and earlier. Under a successful Man-in-the-Middle (MitM) attack and controlled network conditions, it could allow unauthorized changes. Updating to the latest version is recommended.
Azərbaycanca: CVE-2026-66154 GMS tətbiqinin 9.5.1 və daha əvvəlki versiyalarında imtiyazlı kommunikasiya iş axınında qeyri-kafi sertifikat doğrulaması zəifliyidir. Bu, uğurlu Man-in-the-Middle (MitM) hücumu və idarə olunan şəbəkə şəraitində icazəsiz dəyişikliklərə səbəb ola bilər. Tətbiqi ən son versiyaya yeniləmək tövsiyə olunur.
FAQ2
Which versions of the GMS application are affected by CVE-2026-66154?
This vulnerability affects GMS application version 9.5.1 (Build 9510.1044) and earlier.
What conditions are required to exploit CVE-2026-66154?
A successful Man-in-the-Middle (MitM) attack and controlled network conditions are required.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.