CVE-2026-30970 | Coral Server up to 1.0.x API Endpoint /api/v1/sessions authorization (GHSA-wqfm-hhqf-9hgp)
A vulnerability labeled as critical has been found in Coral Server up to 1.0.x. This affects an unknown part of the file /api/v1/sessions of the component API Endpoint. Such manipulation leads to missing authorization.
This vulnerability is documented as CVE-2026-30970. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.