SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-63359

CRITICAL · CVSS 9.8 EPSS 0.42%

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

The vulnerability in the Appriss Insights VINE applications for Exchange allows unauthenticated attackers to bypass authentication, leading to unauthorized access to user credentials and sensitive personally identifiable information (PII). This critical flaw poses a significant risk of account takeover and data exposure, making it imperative for organizations using these applications to prioritize immediate remediation efforts. Security teams should focus on patching and implementing additional access controls to mitigate the risks associated with this vulnerability.

CVE
CVE-2026-63359
Severity
CRITICAL
CVSS
9.8
EPSS
0.42%
Exchange

Original NVD Description

The Appriss Insights (Equifax) Victim Information Notification Exchange (VINE) applications allow an unauthenticated attacker to send a specially-crafted request to bypass the login page, access other users' credentials, take over other user accounts, access sensitive PII, and dump other information from the database.