CVE-2026-77614 | Opencast up to 19.6/20.1 Session mh_default_org.xml jsessionid session fixiation
A vulnerability was found in Opencast up to 19.6/20.1. It has been declared as critical. Affected is an unknown function of the file etc/security/mh_default_org.xml of the component Session Handler. The manipulation of the argument jsessionid results in session fixiation.
This vulnerability is reported as CVE-2026-77614. The attack can be launched remotely. No exploit exists.
It is recommended to upgrade the affected component.VulDB Recent EntriesRead More