Loading…
CVE-2026-27638 — @actual-app/sync-server: Missing authorization in sync endpoints allows cross-us · VulnScope