CVE-2026-11796
Last modified
CVE-2026-11796 is a medium-severity vulnerability rated 5.1/10 on the CVSS scale. Asset Suite allows unauthenticated users to access PropertiesReloadServlet, CacheFlushServlet, MetadataCacheFlushServlet and ResourceBundleReloadServlet, which could result in denial-of-service conditions affecting application availability. These servlets are designed to perform specific functions within production environment depending on how the Asset Suite application is configured..
Description
Asset Suite allows unauthenticated users to access PropertiesReloadServlet, CacheFlushServlet, MetadataCacheFlushServlet and ResourceBundleReloadServlet, which could result in denial-of-service conditions affecting application availability. These servlets are designed to perform specific functions within production environment depending on how the Asset Suite application is configured.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Hitachi Energy | Asset Suite | >= 9.6.0, <= 9.9.0 |
References
Timeline
- Published
- Last Modified
- Status
- Received
Frequently Asked Questions
What is CVE-2026-11796?
How severe is CVE-2026-11796?
How do I fix CVE-2026-11796?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-1179A vulnerability was detected in Yonyou KSOA 9.0. This affect…9.8
- CVE-2026-11790A flaw was found in 389 Directory Server. The PBKDF2-SHA256 …4.9
- CVE-2026-11791A flaw was found in 389 Directory Server. During schema relo…5
- CVE-2026-11792A heap buffer overflow flaw was found in 389 Directory Serve…3.3
- CVE-2026-11793A stack buffer overflow flaw was found in 389 Directory Serv…4.9
- CVE-2026-11794The Advanced Form Integration — Connect Forms to 200+ Apps W…8.1
- CVE-2026-11798The Social Share, Social Login and Social Comments Plugin – …6.1
- CVE-2026-11799UXSS in Focus for iOS / Klar Webkit navigation. This vulnera…7.5
- CVE-2026-1180A flaw was identified in Keycloak’s OpenID Connect Dynamic C…5.8
- CVE-2026-11800A flaw was found in Keycloak. This JWT algorithm confusion v…8.1
- CVE-2026-11801The WPAdverts – Classifieds Plugin plugin for WordPress is v…7.5
- CVE-2026-11802The FoodBook Lite - Online Food Ordering System plugin for W…5.3
Are you affected by CVE-2026-11796?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
