THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-90451 — An example environment-configuration file ships with a fixed, publicly-known secret value used to sign authentication cookies for a bundled packet-analysis component. A deployment that copies this example file into active configuration without running the setup routine that regen

[NVD] CVE-2026-90451 — An example environment-configuration file ships with a fixed, publicly-known secret value used to sign authentication cookies for a bundled packet-analysis component. A deployment that copies this example file into active configuration without running the setup routine that regen

mednvdPublished 2026-09-11

CVE-2026-90451 CVSS: None Published: 2026-09-11T22:16:47.343

An example environment-configuration file ships with a fixed, publicly-known secret value used to sign authentication cookies for a bundled packet-analysis component. A deployment that copies this example file into active configuration without running the setup routine that regenerates the value will use the known default, allowing an

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-90451