CVE-2026-40955EPSS p22.8%
CVE-2026-40955CVE-2026-40955
absolute / secure_access
Description
CVE-2026-40955 is an integer underflow
vulnerability in the traffic parsing function of Secure Access clients prior to
14.55. Attackers with intimate knowledge of and total control over the tunnel
protocol can create a non-persistent DoS against their client.
Scoring
| CVSS | 3.7 () |
| Vector | CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L |
| EPSS | 0.32% probability of exploitation · percentile 22.8% · 2026-10-05T12:00:23Z |
| Last modified | 2026-07-16 |