Sploitus

CVE-2026-22251

No indexed exploits for CVE-2026-22251 yet

wlc is a Weblate command-line client using Weblate's REST API. Prior to 1.17.0, wlc supported providing unscoped API keys in the setting. This practice was discouraged for years, but the code was never removed. This might cause the API key to be leaked to different servers.

Affected products
Linuxmint, Ubuntu, Wlc
Weblate Wlc
< 1.17.0
Fix
Available
CVSS 3.1
5.5 MEDIUM
EPSS
0.2% (6th percentile)
Weakness
CWE-200
NVD status
Analyzed
Published
2026-01-12
CVE-2026-22251 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2026-22251 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2026-22251 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.