HackerFeeds
All CVEs

CVE-2026-10726

UNKNOWN

Published 2026-09-30 · Source 2505284f-8ffb-486c-bf60-e19c1097a90b

Description

Cato Windows SDP Client before version 6.12.6 contains an arbitrary file disclosure vulnerability. A low-privileged local user can cause the Windows service, running as Local System, to read and disclose arbitrary local files due to improper file path validation and missing TLS certificate enforcement.

CWE-73CWE-295
View on NVD