CVE-2026-11459: Secureage Catchpulse
Low severity, CVSS 3.3. EPSS: 0.1% chance of exploitation in the next 30 days.
A security vulnerability has been detected in SecureAge CatchPulse up to 10.9.3. Impacted is an unknown function in the library saappctl.sys of the component IOCTL Handler. The manipulation leads to information disclosure. Local access is required to approach this attack. The exploit has been disclosed publicly and may be used.
Affected products
- Secureage Catchpulse: version 10.9.0 only; version 10.9.1 only; version 10.9.2 only; version 10.9.3 only
Published 2026-06-07. Last modified 2026-07-23.