CVE-2026-78428
8
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:C/C:H/I:H/A:N
Summary
For users authenticated through SAML or OpenID Connect (OIDC), this vulnerability can result in one user receiving another user's authenticated session when multiple SSO login attempts occur concurrently
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| go | neuvector | <5.6.1 | affected |
Weaknesses
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: total
References
- https://github.com/neuvector/neuvector/security/advisories/GHSA-c6rx-pmvf-m3jx
- https://bugzilla.suse.com/show_bug.cgi?id=1279937
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.