SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-69225

MEDIUM · CVSS 5.9 EPSS 0.33%

Source: NVD + CISA KEV + EPSS · Published 2026-08-21 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Esri Portal for ArcGIS versions 11.5 through 12.0 and earlier are vulnerable to an information disclosure flaw that could enable remote, unauthenticated attackers to extract sensitive information via the HTTP response body. Organizations using these versions should prioritize patching to mitigate potential data exposure risks. This vulnerability is particularly relevant for users handling sensitive geographic or operational data.

CVE
CVE-2026-69225
Severity
MEDIUM
CVSS
5.9
EPSS
0.33%

Original NVD Description

There is an information disclosure vulnerability in Esri Portal for ArcGIS versions 11.5 through 12.0 and earlier that may allow a remote, unauthenticated attacker to reflect sensitive information in a http response body.

Related CVEs

Other vulnerabilities affecting the same vendor(s)