Loading…
CVE-2026-49229 — @actual-app/sync-server: Disabled OpenID users keep access through existing sess · VulnScope