CVE-2026-3457: Thalesgroup Sentinel Ldk Runtime
Medium severity, CVSS 6.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Thales Sentinel LDK Runtime on Windows allows Stored XSS. This issue affects Sentinel LDK Runtime: before 10.22.
Affected products
- Thalesgroup Sentinel Ldk Runtime: before 10.22 (fixed in 10.22)
Published 2026-03-27. Last modified 2026-09-03.