CVE-2026-30870 | powersync-ja powersync-service/service-core/service-sync-rules PowerSync Service improper authorization
A vulnerability identified as critical has been detected in powersync-ja powersync-service, service-core and service-sync-rules. This issue affects some unknown processing of the component PowerSync Service. The manipulation leads to improper authorization.
This vulnerability is referenced as CVE-2026-30870. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.