Secure Access
Absolute Security · 34 CVEs
CVE-2026-55402 is an out of bounds read vulnerability in Secure Access servers prior to version 14.57. Attackers with a…
Aug 13, 2026
CVE-2026-55401 is a null dereference vulnerability on the load-balancing sub-system of Secure Access servers prior to 1…
Aug 13, 2026
CVE-2026-55400 is an integer underflow in Secure Access servers prior to version 14.57. Attackers with an authenticated…
Aug 13, 2026
Resource exhaustion vulnerability in the Secure Access publisher
Jul 15, 2026
Memory management vulnerability in Secure Access clients
Jul 15, 2026
Memory management vulnerability in Secure Access servers
Jul 15, 2026
Memory management error in Secure Access servers prior to 14.55
Jul 15, 2026
Input validation error in Secure Access clients prior to 14.55
Jul 15, 2026
Frameable content vulnerability in the Secure Access server login page
Jul 15, 2026
Memory disclosure in Secure Access Clients
Jul 15, 2026
Integer underflow vulnerability in Secure Access clients
Jul 15, 2026
Integer underflow in Secure Access clients prior to 14.55
Jul 15, 2026
Heap overflow in Secure Access clients
Jul 15, 2026
Privilge misconfiguration in Secure Access installers
Jul 15, 2026
Information Disclosure in Secure Access Between 12.70 and 14.20
Jan 17, 2026
XSS in Secure Access Consoles prior to 14.20
Jan 17, 2026
Denial of Service in Secure Access Servers Prior to 14.20.
Jan 17, 2026
CVE-2025-59596 is a denial-of-service vulnerability in Secure Access Windows client versions 12.0 to 14.10 that is addr…
Nov 4, 2025
Cross-site Scripting vulnerability in Secure Access prior to 14.10
Oct 2, 2025
Open Redirect in Secure Access prior to 14.10
Oct 2, 2025
Server-side request forgery in Secure Access
Oct 2, 2025
Excess Permissions in Warehouse
Oct 2, 2025
Permissions bypass vulnerability in the Secure Access administrative console of Absolute Secure Access prior to version…
Jul 30, 2025
Elevation of privilege vulnerability in the Secure Access administrative console of Absolute Secure Access prior to ver…
Jul 30, 2025
Data deserialization vulnerability in the Secure Access administrative console of Absolute Secure Access prior to versi…
Jul 30, 2025
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2026-55402 | CVE-2026-55402 is an out of bounds read vulnerability in Secure Access servers prior to version 14.57. Attackers with an ‘in the middle’ position can send spec… | HIGH | 0.40% | Aug 13, 2026 |
| CVE-2026-55401 | CVE-2026-55401 is a null dereference vulnerability on the load-balancing sub-system of Secure Access servers prior to 14.57. Attackers can send an unauthentica… | MEDIUM | 0.40% | Aug 13, 2026 |
| CVE-2026-55400 | CVE-2026-55400 is an integer underflow in Secure Access servers prior to version 14.57. Attackers with an authenticated session can send specially crafted traf… | MEDIUM | 0.37% | Aug 13, 2026 |
| CVE-2026-55399 | Resource exhaustion vulnerability in the Secure Access publisher | MEDIUM | 0.37% | Jul 15, 2026 |
| CVE-2026-55398 | Memory management vulnerability in Secure Access clients | MEDIUM | 0.35% | Jul 15, 2026 |
| CVE-2026-33445 | Memory management vulnerability in Secure Access servers | HIGH | 0.40% | Jul 15, 2026 |
| CVE-2026-33443 | Memory management error in Secure Access servers prior to 14.55 | HIGH | 0.37% | Jul 15, 2026 |
| CVE-2026-40958 | Input validation error in Secure Access clients prior to 14.55 | LOW | 0.38% | Jul 15, 2026 |
| CVE-2026-40957 | Frameable content vulnerability in the Secure Access server login page | MEDIUM | 0.43% | Jul 15, 2026 |
| CVE-2026-40956 | Memory disclosure in Secure Access Clients | LOW | 0.27% | Jul 15, 2026 |
| CVE-2026-40955 | Integer underflow vulnerability in Secure Access clients | LOW | 0.32% | Jul 15, 2026 |
| CVE-2026-40954 | Integer underflow in Secure Access clients prior to 14.55 | LOW | 0.32% | Jul 15, 2026 |
| CVE-2026-40953 | Heap overflow in Secure Access clients | MEDIUM | 0.10% | Jul 15, 2026 |
| CVE-2026-40952 | Privilge misconfiguration in Secure Access installers | HIGH | 0.14% | Jul 15, 2026 |
| CVE-2026-0519 | Information Disclosure in Secure Access Between 12.70 and 14.20 | MEDIUM | 0.14% | Jan 17, 2026 |
| CVE-2026-0518 | XSS in Secure Access Consoles prior to 14.20 | MEDIUM | 0.17% | Jan 17, 2026 |
| CVE-2026-0517 | Denial of Service in Secure Access Servers Prior to 14.20. | MEDIUM | 0.31% | Jan 17, 2026 |
| CVE-2025-59596 | CVE-2025-59596 is a denial-of-service vulnerability in Secure Access Windows client versions 12.0 to 14.10 that is addressed in version 14.12. If a local netwo… | MEDIUM | 0.22% | Nov 4, 2025 |
| CVE-2025-54089 | Cross-site Scripting vulnerability in Secure Access prior to 14.10 | MEDIUM | 0.21% | Oct 2, 2025 |
| CVE-2025-54088 | Open Redirect in Secure Access prior to 14.10 | MEDIUM | 0.18% | Oct 2, 2025 |
| CVE-2025-54087 | Server-side request forgery in Secure Access | LOW | 0.18% | Oct 2, 2025 |
| CVE-2025-54086 | Excess Permissions in Warehouse | MEDIUM | 0.18% | Oct 2, 2025 |
| CVE-2025-49082 | Permissions bypass vulnerability in the Secure Access administrative console of Absolute Secure Access prior to version 13.56 | MEDIUM | 0.22% | Jul 30, 2025 |
| CVE-2025-54085 | Elevation of privilege vulnerability in the Secure Access administrative console of Absolute Secure Access prior to version 13.56 | MEDIUM | 0.20% | Jul 30, 2025 |
| CVE-2025-49083 | Data deserialization vulnerability in the Secure Access administrative console of Absolute Secure Access prior to version 13.56 | HIGH | 0.37% | Jul 30, 2025 |
Showing 1 to 25 of 34 CVEs