No analysis available yet.
Vendor Solution
Upgrade current Sentinel LDK Runtime to version 10.22 or higher.
Tracking
Sign in to view the affected projects.
No advisories yet.
Fri, 27 Mar 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 27 Mar 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Thales Sentinel LDK Runtime on Windows allows Stored XSS.This issue affects Sentinel LDK Runtime: before 10.22. | |
| Title | Stored XSS vulnerability in Sentinel ACC | |
| First Time appeared |
Thales
Thales sentinel Ldk Runtime |
|
| Weaknesses | CWE-79 | |
| CPEs | cpe:2.3:a:thales:sentinel_ldk_runtime:*:*:windows:*:*:*:*:* | |
| Vendors & Products |
Thales
Thales sentinel Ldk Runtime |
|
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: THA-PSIRT
Published:
Updated: 2026-03-27T13:45:21.259Z
Reserved: 2026-03-02T19:33:17.694Z
Link: CVE-2026-3457
Updated: 2026-03-27T13:06:25.777Z
Status : Received
Published: 2026-03-27T09:16:20.543
Modified: 2026-03-27T09:16:20.543
Link: CVE-2026-3457
No data.
OpenCVE Enrichment
No data.