CVE-2026-18918 A vulnerability was discovered in Eclipse Lyo 6.0.0 and earlier versions, where the AbstractAdapterCredentialsFilter could be misused to bypass authentication when used in 2-legged OAuth flows. This release fixes the issue.
Github release entry: https://github.com/eclipse-lyo/lyo/releases/tag/v6.0.1.Final