CVE-2026-22568: Zscaler Internet Access Admin Portal
Low severity, CVSS 2.7. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper neutralization of special elements in user-supplied input within the ZIA Admin UI could allow an authenticated administrator to access or retrieve unauthorized internal information in rare conditions.
Affected products
- Zscaler Zscaler Internet Access Admin Portal: before 6.2r (fixed in 6.2r)
Published 2026-02-23. Last modified 2026-06-17.