CVE-2026-76131: Medium severity Yamaha VOCALOID6 vulnerability
Published Aug 21, 2026
·Updated
Use of hard-coded credentials issue exists in VOCALOID6 , which may allow an attacker to impersonate a legitimate VOCALOID6 Editor and gain access to Yamaha's activation and content servers.
Affected Software
1 affected component
Yamaha VOCALOID6
Event History
Aug 21, 2026
CVE Published
via MITRE·02:02 AM
Data Sourced
via MITRE·02:02 AM
DescriptionSeverity
Frequently Asked Questions
1
What can an unauthenticated attacker do with this issue?
An attacker may impersonate a legitimate VOCALOID6 Editor and gain access to Yamaha's activation and content servers. The reported impact is limited to confidentiality; no integrity or availability impact is specified.
2
Does exploitation require local access, credentials, or user interaction?
No. The supplied vector indicates network-reachable exploitation with low attack complexity, no privileges required, and no user interaction required.