Observable Response Discrepancy in DernekPlus Website Template by An Unresponsive Vendor
CVE-2026-9161

5.3MEDIUM

Key Information:

Vendor

Dernekplus

Vendor
CVE Published:
10 September 2026

What is CVE-2026-9161?

The DernekPlus Website Template is impacted by an observable response discrepancy vulnerability, which facilitates account footprinting. By exploiting this issue, attackers can gather information about user accounts through variations in response behaviors. This vulnerability underscores the importance of robust security measures in web templates, particularly in how they manage and reveal response data. Despite the potential severity of this flaw, the vendor has not publicly responded to notifications regarding the disclosure of this security issue.

Affected Version(s)

Website Template 0 <= 10092026

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.