Breaking: CVE-2026-22251 - wlc may leak API keys due to an insecure API key configuration

Breaking: CVE-2026-22251 - wlc may leak API keys due to an insecure API key configuration

CVE ID : CVE-2026-22251 Published : Jan. 12, 2026, 6:15 p.m. | 27 minutes ago Description : wlc is a Weblate command-line client using Weblate's REST API. Prior to 1.17.0, wlc supported providing unscoped API keys in the setting. This practice was discouraged for years, but the code was never removed. This might cause the API key to be leaked to different servers. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Jan. 12, 2026

Source: Telegram CVE Monitor