CVE-2026-11796: Hitachi Energy Asset Suite

Medium severity, CVSS 5.1. EPSS: 0.2% chance of exploitation in the next 30 days.

Asset Suite allows unauthenticated users to access PropertiesReloadServlet, CacheFlushServlet, MetadataCacheFlushServlet and ResourceBundleReloadServlet, which could result in denial-of-service conditions affecting application availability. These servlets are designed to perform specific functions within production environment depending on how the Asset Suite application is configured.

Affected products

Published 2026-09-29. Last modified 2026-09-29.