What is CVE-2026-14465?
CVE-2026-14465 is an insufficient session expiration vulnerability in Bilin Software's HUMANIST Digital Human Resources, enabling session ID reuse (Session Replay) attacks. It affects versions from 26.0 before 26.1, allowing unauthorized access through stale session IDs. Affected users should urgently update the software to the latest version.
Azərbaycanca: CVE-2026-14465, Bilin Software şirkətinin HUMANIST Digital Human Resources platformasında kifayət qədər seans müddətinin bitməməsi zəifliyidir. Bu, təcavüzkara köhnə seans ID-lərini təkrar istifadə etməklə (Session Replay) icazəsiz giriş əldə etməyə imkan verir. 26.0 versiyasından 26.1-ə qədər olan sistemlər təsirlənir, istifadəçilərə təcili olaraq proqramı yeniləmələri tövsiyə olunur.
Related CVEs
link basis: shared vendor: Bilin Software and Informatics Consultancy Inc.
FAQ2
Which versions of the HUMANIST platform are affected by CVE-2026-14465?
The vulnerability affects versions from 26.0 before 26.1 of the HUMANIST Digital Human Resources platform.
What is recommended for users to protect against CVE-2026-14465?
Affected users are advised to urgently update the HUMANIST software to the latest version.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.