CVE-2026-14838EPSS p25.3%
CVE-2026-14838CVE-2026-14838
Description
Use of GET request method with sensitive query strings vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Session Hijacking.
This issue affects HUMANIST Digital Human Resources: from 26.0 before 26.1.
Scoring
| CVSS | 7.4 () |
| Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N |
| EPSS | 0.34% probability of exploitation · percentile 25.3% · 2026-10-05T12:00:23Z |
| Last modified | 2026-08-26 |