CyberSecurityBoardThreat Intel · CVEs · Products

Category: Critical CVEs

Critical and exploited CVEs, vulnerability intelligence and remediation guidance.

Critical CVEs

CVE-2026-80428 — Critical vulnerability brief

CVSS 9.3

ILIAS deserialises stored session data for an unauthenticated caller. The Shibboleth back-channel endpoint at components/ILIAS/AuthShibboleth/resources/shib_logout.php runs in a context that ilInitialisation exempts…

critical Critical CVE CVE-2026-80428
August 26, 2026