Beveiligingsadvies

CVE-2026-33583

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-05-13 18:19:34
Laatst bijgewerkt 2026-05-13 18:57:55
Toegewezen door ENISA
CVSS-score 8.7
Status PUBLISHED

Beschrijving

Exposure of the QKEY (used as input into the ‘OTA-Quantum’ device registration process) and internal system keys via an unauthenticated and unencrypted HTTP GET method in the Arqit Symmetric Key Agreement Platform. This issue affects Symmetric Key Agreement Platform: before 26.03.