HIGH
CVE-2026-78428
CVSS
8
Description
For users authenticated through SAML or OpenID Connect (OIDC), this vulnerability can result in one user receiving another user's authenticated session when multiple SSO login attempts occur concurrently
Weakness (CWE)
CWE-384
EPSS Score
0.24%
Probability of exploitation in next 30 days
15.1th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.