CVE-2026-78428EPSS p17.1%

CVE-2026-78428CVE-2026-78428

Description

For users authenticated through SAML or OpenID Connect (OIDC), this vulnerability can result in one user receiving another user's authenticated session when multiple SSO login attempts occur concurrently

Scoring

EPSS0.27% probability of exploitation · percentile 17.1% · 2026-10-05T12:00:23Z
Last modified2026-09-28
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.