SEPTEMBER 9, 2026
Live Feed
Back to database
Case File

CVE-2026-14254

HIGH · CVSS 8.3 EPSS 0.33%

Source: NVD + CISA KEV + EPSS · Published 2026-07-16 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

A race condition in the account lockout mechanism of Delphix Continuous Data allows attackers to bypass the lockout threshold through concurrent authentication requests, undermining brute-force protections. This vulnerability enables continued password guessing on targeted accounts, posing a significant risk to user account security. Organizations using Delphix Continuous Data should prioritize addressing this issue to safeguard against potential unauthorized access.

CVE
CVE-2026-14254
Severity
HIGH
CVSS
8.3
EPSS
0.33%

Original NVD Description

A race condition in the account lockout mechanism in Delphix Continous Data allowed the lockout threshold to be bypassed through concurrent authentication requests. Parallel login attempts were processed before the failed-login counter and lockout status were updated, defeating brute-force protections and enabling continued password guessing against a targeted account.