Information Disclosure in Omega Solution CoinEx Crypto 2025 Support Ticket API
CVE-2026-105098
Key Information:
- Vendor
Omega Solution
- Status
- Vendor
- CVE Published:
- 4 October 2026
Badges
What is CVE-2026-105098?
A critical vulnerability has been identified in the Support Ticket API of Omega Solution CoinEx Crypto 2025. This security flaw allows attackers to manipulate parameters associated with the ticketing system, resulting in unauthorized access to sensitive information. Given that this attack can be executed remotely, there is a significant risk for data exposure. It is important to note that the vendor has not responded to requests regarding this issue, and the product’s website appears to be inactive, indicating possible retirement or replacement of the service.
Affected Version(s)
CoinEx Crypto 2025
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved
