Information Exposure Vulnerability in Ciena Navigator Network Control Suite
CVE-2026-5267
7.5HIGH
What is CVE-2026-5267?
The Ciena Navigator Network Control Suite is susceptible to an information exposure vulnerability found in its event-streaming API. This security flaw arises from insufficient authentication enforcement, allowing unauthenticated attackers with network access to potentially gain entry to the event stream. As a result, sensitive information may be disclosed, leading to serious security implications for affected users.
Affected Version(s)
Navigator NCS 7.2 and any older release
Navigator NCS 7.2-P01 through 7.2-P07
Navigator NCS 8.0
