CVE-2026-3268General(psi-probe / psi_probe)

LOWCVSS 4.3 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

A vulnerability was detected in psi-probe PSI Probe up to 5.3.0. The affected element is an unknown function of the file psi-probe-core/src/main/java/psiprobe/controllers/sessions/RemoveSessAttributeController.java of the component Session Attribute Handler. Performing a manipulation results in improper access controls. The attack can be initiated remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-266CWE-284

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • psi_probe

Threat summary

  • 3 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • Peaked 2d ago at 1 mentions (2026-02-26); latest day: 1
  • 3 total mentions across 3 days

Affected systems

Vendors
Products
psi_probe

Deep dive

Activity timeline3 mentions / 3d
00111Mentions · 2026-02-26: 1Mentions · 2026-02-27: 1Mentions · 2026-03-13: 1Technical Details · 2026-02-26: 1Technical Details · 2026-03-13: 102-2602-2703-13
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-261
General1
2026-02-271
General1
2026-03-131
Disclosure1
Full discourse3 posts
  • DailyCVE@dailycve
    Disclosure

    🟠 PSI Probe, Improper Access Control, #CVE-2026-3268 (Medium) https://dailycve.com/psi-probe-improper-access-control-cve-2026-3268-medium/

    Post summary

    The post announces the discovery of CVE‑2026‑3268 in PSI Probe, noting an Improper Access Control flaw with medium severity, but does not provide a PoC, patch information, or evidence of active exploitation.

    0000030
    168 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-3268 A vulnerability was detected in psi-probe PSI Probe up to 5.3.0. The affected element is an unknown function of the file psi-probe-core/src/main/java/psiprobe/controlle… https://www.cve.org/CVERecord?id=CVE-2026-3268

    Post summary

    The text reports a CVE affecting psi‑probe PSI Probe up to version 5.3.0, providing only the affected file path and a reference link, with no further technical or exploitation details.

    00000141
    56.6K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-3268 Session Attribute Manipulation Vulnerability in PSI Probe up to 5.3.0 https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3268

    Post summary

    The text briefly references CVE-2026-3268 in PSI Probe up to version 5.3.0, offering minimal technical details without indicating PoC, exploit, active use, patch, or debunking.

    0000033
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Apppsi-probepsi_probe---

Explore more