Skip to content
Critical Vulnerability Found in Thales SConnect Allows Remote Code Execution

Critical Vulnerability Found in Thales SConnect Allows Remote Code Execution

First seen 4 Oct 2026, 04:08 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •October 4, 2026 at 06:06 UTC
  • •CVE-2026-18397 allows unauthenticated remote code execution in Thales SConnect.
  • •The vulnerability has a CVSS score of 9.4, classified as critical.
  • •No patch has been released, and organizations should assess their exposure immediately.

A critical vulnerability, CVE-2026-18397, has been identified in Thales SConnect, enabling unauthenticated remote code execution (RCE) on affected systems. The flaw arises from cryptographic weaknesses and memory management issues, allowing attackers to exploit an unrestricted messaging interface between a web page and the native host. This vulnerability has a CVSS score of 9.4, indicating a critical severity level. The vulnerability was published on October 1, 2026, and poses a significant risk to users of the SConnect native host component. No patch has been reported as of the latest update. Organizations are urged to assess their exposure and implement mitigations to protect against potential exploitation. The exploit method could lead to severe consequences if not addressed promptly.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated just now How this analysis works

Timeline

2026-10-01
CVE-2026-18397 published
Thales disclosed a critical RCE vulnerability in SConnect, affecting the native host component.
Rapid7

More articles in this cluster (2)

Following this threat?

Track CVE-2026-18397 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed

Common questions

What systems are affected by CVE-2026-18397?
The vulnerability affects the Thales SConnect native host component, but specific version details are not provided.
Is there a patch available for this vulnerability?
As of now, no patch has been reported for CVE-2026-18397.
What should organizations do to mitigate this risk?
Organizations should assess their exposure to the vulnerability and implement security measures to prevent exploitation.