CyberRota Analysis
AI-GeneratedA vulnerability exists that allows a valid SAML Identity Provider (IdP) response to be exploited for impersonating another user within Secret Server, posing a critical risk to user authentication integrity. This could lead to unauthorized access to sensitive information and resources. Organizations utilizing Secret Server should prioritize immediate remediation to mitigate potential security breaches.
CVE
CVE-2026-15640
Severity
CRITICAL
CVSS
9.5
EPSS
0.28%
Original NVD Description
Under certain conditions a valid SAML IdP response may be used to impersonate another Secret Server user.