PT-2026-67683 · Unknown · Humanist Digital Human Resources

CVE-2026-14465

·

Published

2026-08-04

·

Updated

2026-08-04

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions HUMANIST Digital Human Resources versions 26.0 through 26.0
Description Insufficient session expiration allows for the reuse of session IDs, a technique known as Session Replay, where an attacker captures and reuses a valid session token to gain unauthorized access to a user session.
Recommendations Update HUMANIST Digital Human Resources to version 26.1.

Fix

Insufficient Session Expiration

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-14465

Affected Products

Humanist Digital Human Resources