Rapid7 Critical Vulnerability Found in Thales SConnect Allows Remote Code Execution
Article Content
- •CVE-2026-18397 allows unauthenticated remote code execution in Thales SConnect.
- •The vulnerability has a CVSS score of 9.4, classified as critical.
- •No patch has been released, and organizations should assess their exposure immediately.
A critical vulnerability, CVE-2026-18397, has been identified in Thales SConnect, enabling unauthenticated remote code execution (RCE) on affected systems. The flaw arises from cryptographic weaknesses and memory management issues, allowing attackers to exploit an unrestricted messaging interface between a web page and the native host. This vulnerability has a CVSS score of 9.4, indicating a critical severity level. The vulnerability was published on October 1, 2026, and poses a significant risk to users of the SConnect native host component. No patch has been reported as of the latest update. Organizations are urged to assess their exposure and implement mitigations to protect against potential exploitation. The exploit method could lead to severe consequences if not addressed promptly.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track CVE-2026-18397 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Common questions
What systems are affected by CVE-2026-18397?
Is there a patch available for this vulnerability?
What should organizations do to mitigate this risk?
Continue Reading
RCE Vulnerability in SConnect Affects Banks SConnect, an authentication middleware with over 1 million users, has a remote code execution (RCE) vulnerability (CVE-2026-18397) due to a flawed RSA-2048 token validation implementation. This flaw allows any site or iframe viewed by an user to silently download and execute a DLL, exploiting uninitialized memory…
Citrix NetScaler Critical Vulnerabilities Exploited: Urgent Patching Required Citrix NetScaler ADC and Gateway products are affected by critical vulnerabilities CVE-2026-88771 and CVE-2026-88772, both assigned a CVSS score of 9.5. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on September 27, 2026, and mandated…