A vulnerability marked as critical has been reported in grisuno LazyOwn up to 0.2.153. The impacted element is an unknown function of the file payload.json/core/payload_schema.py of the component Default Credentials. The manipulation leads to hard-coded credentials.
This vulnerability is documented as CVE-2026-68503. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.