A vulnerability labeled as critical has been found in OpenNMS Group Meridian and Horizon . This affects an unknown part of the component v2 Alarm REST API . Such manipulation leads to improper authorization. This vulnerability is documented as CVE-2026-19182 . The attack can be executed remotely. There is not any exploit available.