AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2026-3277

MEDIUM · CVSS 6.5 EPSS 0.16%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-02-27 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.5. See the original NVD description below for full technical details.

CVE
CVE-2026-3277
Severity
MEDIUM
CVSS
6.5
EPSS
0.16%

Original NVD Description

The OpenID Connect (OIDC) authentication configuration in PowerShell Universal before 2026.1.3 stores the OIDC client secret in cleartext in the .universal/authentication.ps1 script, which allows an attacker with read access to that file to obtain the OIDC client credentials

Related CVEs

Other vulnerabilities affecting the same vendor(s)