CVE-2026-0519
Severity CVSS v4.0:
MEDIUM
Type:
CWE-532
Information Exposure Through Log Files
Publication date:
17/01/2026
Last modified:
02/02/2026
Description
In Secure Access 12.70 and prior to 14.20, the logging <br />
subsystem may write an unredacted authentication token to logs under <br />
certain configurations. Any party with access to those logs could read <br />
the token and reuse it to access an integrated system.
Impact
Base Score 4.0
4.60
Severity 4.0
MEDIUM
Base Score 3.x
3.40
Severity 3.x
LOW
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:absolute:secure_access:*:*:*:*:*:*:*:* | 12.70 (including) | 14.20 (excluding) |
To consult the complete list of CPE names with products and versions, see this page



