SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-69224

MEDIUM · CVSS 5.9 EPSS 0.33%

Source: NVD + CISA KEV + EPSS · Published 2026-08-21 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Esri Portal for ArcGIS versions 12.0 and earlier are vulnerable to an information disclosure flaw that could enable a remote, unauthenticated attacker to reflect sensitive information in the HTTP response body under specific conditions. This could potentially expose confidential data to unauthorized parties. Organizations using affected versions should prioritize remediation to mitigate the risk of data leakage.

CVE
CVE-2026-69224
Severity
MEDIUM
CVSS
5.9
EPSS
0.33%

Original NVD Description

There is an information disclosure vulnerability in Esri Portal for ArcGIS versions 12.0 and earlier that may under difficult to reproduce circumstances allow a remote, unauthenticated attacker to reflect sensitive information in a http response body.

Related CVEs

Other vulnerabilities affecting the same vendor(s)