CVE-2026-106461

CVE-2026-106461 published: Backstage is an open framework for building developer portals. Prior to 4.1.0, the @backstage/plugin-scaffolder-backend package is affected by incorrect authorization in scaffolder task listing. An authenticated internal user may be able to view metadata fo...

View full NVD advisory → ← Back to CVE watch