CVE-2019-5919: Nablarch Project Nablarch
Critical severity, CVSS 9.1. EPSS: 1% chance of exploitation in the next 30 days.
An incomplete cryptography of the data store function by using hidden tag in Nablarch 5 (5, and 5u1 to 5u13) allows remote attackers to obtain information of the stored data, to register invalid value, or alter the value via unspecified vectors.
Affected products
- Nablarch Project Nablarch: version 5 only; version 5u1 only; version 5u13 only
Published 2019-03-12. Last modified 2026-06-17.