CVE-2026-41161 | Sync-in Server up to 2.1.x /api/auth/login timing discrepancy
A vulnerability was found in Sync-in Server up to 2.1.x. It has been rated as problematic. This affects an unknown part of the file /api/auth/login. This manipulation causes observable timing discrepancy.
The identification of this vulnerability is CVE-2026-41161. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.