A blog post was today published outlining the risk (CVE-2025-34509) of Sitecore having a default user Sitecore\ServicesAPI and a password of b. The user usually has no default roles, however, it is already one step inside the system. Probably setting a secure and strong password could be sufficient. I didn’t yet see an official statement […] Source