CVE-2026-0519: Absolute Secure Access
Low severity, CVSS 3.4. EPSS: 0.1% chance of exploitation in the next 30 days.
In Secure Access 12.70 and prior to 14.20, the logging subsystem may write an unredacted authentication token to logs under certain configurations. Any party with access to those logs could read the token and reuse it to access an integrated system.
Affected products
- Absolute Secure Access: from 12.70, before 14.20 (fixed in 14.20)
Published 2026-01-17. Last modified 2026-06-17.