CVE-2026-11796: Hitachi Energy Asset Suite
Medium severity, CVSS 5.1. EPSS: 0.2% chance of exploitation in the next 30 days.
Asset Suite allows unauthenticated users to access PropertiesReloadServlet, CacheFlushServlet, MetadataCacheFlushServlet and ResourceBundleReloadServlet, which could result in denial-of-service conditions affecting application availability. These servlets are designed to perform specific functions within production environment depending on how the Asset Suite application is configured.
Affected products
- Hitachi Energy Asset Suite: from 9.6.0, up to and including 9.9.0
Published 2026-09-29. Last modified 2026-09-29.