A vulnerability marked as critical has been reported in CERT.PL Core up to 2.18.x. Affected is an unknown function of the component Remote Instances Proxy API. The manipulation leads to improper authorization.

This vulnerability is referenced as CVE-2026-66723. Remote exploitation of the attack is possible. No exploit is available.

It is suggested to upgrade the affected component.