OCTOBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-62108

CRITICAL · CVSS 9.8 EPSS 0.61%

Source: NVD + CISA KEV + EPSS · Published 2026-09-17 · Last synced 2026-10-07

CyberRota Analysis

AI-Generated

The vulnerability allows unauthenticated attackers to exploit broken authentication mechanisms in Headless Single Sign On versions up to 1.7.0, potentially leading to unauthorized access to sensitive user data and system resources. Organizations utilizing this software should prioritize immediate remediation to mitigate the risk of data breaches and unauthorized system manipulation.

CVE
CVE-2026-62108
Severity
CRITICAL
CVSS
9.8
EPSS
0.61%

Original NVD Description

Unauthenticated Broken Authentication in Headless Single Sign On <= 1.7.0 versions.