Ghostwire

CVE-2026-14881: When importing connections in Compass it is possible to override some connection options that are otherwise can't be...

HIGH CVSS 0.0

Published: July 22, 2026 | Last Modified: July 23, 2026

Description

When importing connections in Compass it is possible to override some connection options that are otherwise can't be changed via connection form. In particular it is possible to provide a custom browser open command for OIDC auth flow that is usually can be set only globally via Compass settings.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (1 articles)

References