CVE-2026-77614 | Opencast up to 19.6/20.1 Session mh_default_org.xml jsessionid session fixiation

SecurityVulns

A vulnerability was found in Opencast up to 19.6/20.1. It has been declared as critical. Affected is an unknown function of the file etc/security/mh_default_org.xml of the component Session Handler. The manipulation of the argument jsessionid results in session fixiation.

This vulnerability is reported as CVE-2026-77614. The attack can be launched remotely. No exploit exists.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More