SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-84839

MEDIUM · CVSS 5.3 EPSS 0.45% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-02 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability in the web.xml file of the Admin Console/DPO Compliance Console in tsi-coop tsi-dpdp-cms versions up to 0.5.0 allows for remote manipulation, potentially leading to missing authentication. This could enable unauthorized access to sensitive functionalities. Organizations using this software should prioritize upgrading to version 0.5.1 to mitigate the risk of exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-84839
Severity
MEDIUM
CVSS
5.3
EPSS
0.45%

Original NVD Description

A vulnerability was determined in tsi-coop tsi-dpdp-cms up to 0.5.0. Affected by this issue is some unknown functionality of the file web.xml of the component Admin Console/DPO Compliance Console. Executing a manipulation can lead to missing authentication. It is possible to launch the attack remotely. The exploit has been publicly disclosed and may be utilized. Upgrading to version 0.5.1 can resolve this issue. It is suggested to upgrade the affected component.