What is CVE-2026-14804?
Bilin Software's HUMANIST Digital Human Resources uses a hard-coded cryptographic key, allowing an attacker to read sensitive constants within an executable. This vulnerability affects versions from 26.0 before 26.1. Upgrading to version 26.1 is required to mitigate the issue.
Azərbaycanca: Bilin Software şirkətinin HUMANIST Digital Human Resources məhsulunda sabit kodlaşdırılmış kriptoqrafik açar (hard-coded cryptographic key) istifadə olunub. Bu boşluq təcavüzkara icra olunan fayl daxilində həssas sabitləri oxumağa imkan yaradır. HUMANIST Digital Human Resources 26.0 versiyasından 26.1-ə qədər olan versiyalar təsirlənir, 26.1 versiyasına yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-798
FAQ2
Which versions of HUMANIST Digital Human Resources are affected by CVE-2026-14804?
This vulnerability affects HUMANIST Digital Human Resources versions from 26.0 before 26.1.
How can CVE-2026-14804 be mitigated?
To mitigate this vulnerability, upgrading HUMANIST Digital Human Resources to version 26.1 is required.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.