A vulnerability has been found in SBA Research iris-web 2.4.26 and classified as problematic. Affected is an unknown function. The manipulation leads to improper restriction of excessive authentication attempts.

This vulnerability is traded as CVE-2026-18362. It is possible to initiate the attack remotely. There is no exploit available.