CVE-2026-59502
Received Received - Intake

Observable Discrepancy in Software Component

Vulnerability report for CVE-2026-59502, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-08-13

Last updated on: 2026-08-13

Assigner: Israel National Cyber Directorate

Description

CWE-203: Observable Discrepancy

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-08-13
Last Modified
2026-08-13
Generated
2026-08-13
AI Q&A
2026-08-13
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Currently, no data is known.

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-203 The product behaves differently or sends different responses under different circumstances in a way that is observable to an unauthorized actor, which exposes security-relevant information about the state of the product, such as whether a particular operation was successful or not.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability involves an observable discrepancy, meaning it allows attackers to gather information by comparing differences in system behavior or responses. It typically occurs when error messages, timing, or other outputs reveal sensitive details that should remain hidden.

Impact Analysis

An attacker could exploit this to infer sensitive information, such as whether a username exists in a system, by observing differences in responses. This may lead to further attacks like brute force or targeted phishing attempts.

Compliance Impact

This vulnerability may violate data protection requirements by exposing sensitive information through discrepancies. GDPR and HIPAA mandate protecting personal data, and such leaks could result in non-compliance, fines, or legal consequences.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-59502. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart