Beveiligingsadvies

CVE-2026-0696

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-01-16 13:34:49
Laatst bijgewerkt 2026-01-27 12:14:05
Toegewezen door ConnectWise
CVSS-score 6.5
Status PUBLISHED

Beschrijving

In ConnectWise PSA versions older than 2026.1, certain session cookies were not set with the HttpOnly attribute. In some scenarios, this could allow client-side scripts access to session cookie values.