Ghostwire

CVE-2026-14950: An unauthenticated remote attacker in possession of a valid session identifier is able to continue using the session...

CRITICAL CVSS 0.0

Published: August 20, 2026 | Last Modified: August 20, 2026

Description

An unauthenticated remote attacker in possession of a valid session identifier is able to continue using the session after it should have expired. This increases the risk associated with stolen, leaked, shared, or unattended sessions and may enable unauthorized continued access to the FDS web interface.

Ghostwire Analysis — What This Means Practically

This analysis is generated by Ghostwire from NVD, CISA KEV, EPSS, and open-source intelligence data. Verify findings through primary sources before acting.

Security Coverage (1 articles)

References