Authentication Bypass via SAML Response Manipulation - CVE-2026-15640
CVE-2026-15640
The distributed engine of Secret Server version 11.7.49 and earlier allows an attacker to impersonate another distributed engine by exploiting a vulnerability in an initial authorization event.
Upgrade to Secret Server version 11.7.60 or later
Review the complete instructions on the vendor's siteThe publication date reported by the vendor.
We collected the advisory from the official source.
Our collector saw this advisory during a later source check.