CVE-2026-14948
HIGH
NVD
CVSS Score
8.8
Severity
HIGH
Published
Aug 20, 2026
Vendor
unknown
Description
A low privileged remote attacker can hijack an active administrative session without needing to know the administrator password by extracting live plaintext session identifiers for authenticated users from downloadable error log archives.