CVE-2026-28725

Sensitive information disclosure due to improper configuration of a headless browser. The following products are affected: Acronis Cyber Protect 17 (Linux, Windows) before build 41186.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:acronis:cyber_protect:*:*:*:*:*:*:*:*
OR cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-03-06 00:16

Updated : 2026-03-13 16:38


NVD link : CVE-2026-28725

Mitre link : CVE-2026-28725

CVE.ORG link : CVE-2026-28725


JSON object : View

Products Affected

microsoft

  • windows

linux

  • linux_kernel

acronis

  • cyber_protect
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource