【ShengYuan|DMS+ (Non-Mobile) - Use of Hard-coded Credentials】(CVE-2026-18452, CVSS: 10.0) ShengYuan DMS+ (Non-Mobile) contains a Use of Hard-coded Credentials vulnerability. An unauthenticated remote attacker can exploit a fixed
API KEY to obtain control of all devices with DMS+ installed.