CVE-2026-27661: Siemens Sinec Security Monitor

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability has been identified in SINEC Security Monitor (All versions < V4.9.0). The affected application leaks confidential information in metadata, and files such as information on contributors and email address, on `SSM Server`.

Affected products

  • Siemens Sinec Security Monitor: before 4.9.0 (fixed in 4.9.0)

Published 2026-03-10. Last modified 2026-06-17.