Exposed Hard-coded M3WebServer Backend API Key
CVE-2026-49191
9.3CRITICAL
What is CVE-2026-49191?
The production build of the M3WebServer hard-codes its backend API keys, which can be easily intercepted through verbose error handling pages.
Affected Version(s)
Connect M6E 5G Portable WiFi Router *
