CVE-2026-14443

Severity CVSS v4.0:
HIGH
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
24/09/2026
Last modified:
25/09/2026

Description

Incomplete log sanitization during bulk IPsec policy collection in Brocade SANnav versions before 3.0.1a permit extension switch pre-shared keys to be written to system logs. Individuals with read access to container logs or support archives can obtain these keys, leading to the potential compromise of encrypted network tunnels.