CRITICAL 9.5 NVD

CVE-2026-103510

P4 Search prior to 2026.4.2 does not fail securely when its service authentication token is blank. In affected configurations, an unauthenticated attacker with

P4 Search prior to 2026.4.2 does not fail securely when its service authentication token is blank. In affected configurations, an unauthenticated attacker with network access can obtain the highest application privilege, potentially leading to compromise of P4 Search and the connected P4 Server.

References

Published: 2026-10-05 · Source: NVD · Feed updated: 2026-10-05
This critical severity vulnerability with a CVSS score of 9.5 was published on 2026-10-05 via NVD.

Risk Timeline

CVE Disclosed2026-10-05 · -1 days ago

Remediation Resources

vulnfeed aggregates 7640 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.