{"apiVersion":"1.0","identifier":"CVE-2026-51368","description":"An issue in Beijing Tongtech Co., Ltd tongweb v.7.0.24 in the Spring HttpInovkerServiceExporter component allows a remote attacker to execute arbitrary code via a crafted request to the console/heimdall endpoint","publishedAt":"2026-08-25T21:17:01","lastModifiedAt":"2026-08-25T21:17:01","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-51368","cvssScore":null,"cvssVector":"Pending","epssProbability":0.00258,"riskScore":0,"affectedProduct":"TongWeb","affectedVersions":"==7.0.24","vulnerabilityType":"Web app","operatingSystems":[],"links":{"self":"https://www.redsauce.net/api/cves/CVE-2026-51368","webPages":{"es":"https://www.redsauce.net/es/cves/CVE-2026-51368","en":"https://www.redsauce.net/en/cves/CVE-2026-51368","fr":"https://www.redsauce.net/fr/cves/CVE-2026-51368","pt":"https://www.redsauce.net/pt/cves/CVE-2026-51368","de":"https://www.redsauce.net/de/cves/CVE-2026-51368","sk":"https://www.redsauce.net/sk/cves/CVE-2026-51368","el":"https://www.redsauce.net/el/cves/CVE-2026-51368"},"source":"https://nvd.nist.gov/vuln/detail/CVE-2026-51368"}}