CVE-2026-22644 PUBLISHED CVSS 5.300000190734863 MEDIUM

Certain requests pass the authentication token in the URL as string query parameter, making it vulnerable to theft through server logs, proxy logs and Referer headers, which could allow an attacker to hijack the user's session and gain unauthorized access.

EPSS 0.03% · 8.6th percentile

Risk Scores

CVSS v3.1
5.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
EPSS Score
0.03%
8.6th percentile

Affected Products

VendorProductVersions
sickincoming_goods_suite
SICK AGIncoming Goods Suiteall versions

Timeline

References

Open in Interactive Console →