OFFLINE
Awaiting data
Security intelligence
MinorCritical vulnerability

CVE-2026-5267 (CVSS 7.5)

NVD · officialPublished Sep 25, 2026Risk 23/100

Ciena Navigator Network Control Suite (NCS) contains an information exposure vulnerability in an event-streaming API that does not properly enforce authentication. An unauthenticated attacker with network access to the affected service could access the event stream and potentially obtain sensitive information.

CVSS
7.5
AV:NetworkAC:LowPR:NoneUI:NoneC:HighI:NoneA:None

This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.

Open primary source