CVE-2026-0519

In Secure Access 12.70 and prior to 14.20, the logging subsystem may write an unredacted authentication token to logs under certain configurations. Any party with access to those logs could read the token and reuse it to access an integrated system.
Configurations

Configuration 1 (hide)

cpe:2.3:a:absolute:secure_access:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-01-17 02:15

Updated : 2026-02-02 16:04


NVD link : CVE-2026-0519

Mitre link : CVE-2026-0519

CVE.ORG link : CVE-2026-0519


JSON object : View

Products Affected

absolute

  • secure_access
CWE
CWE-532

Insertion of Sensitive Information into Log File