Improper neutralization of special elements in user-supplied input within the ZIA Admin UI could allow an authenticated administrator to access or retrieve unauthorized internal information in rare conditions.
References
| Link | Resource |
|---|---|
| https://help.zscaler.com/zia/release-upgrade-summary-2026?applicable_category=zscaler.net&deployment_date=2026-02-12&id=1538576 | Release Notes Vendor Advisory |
Configurations
History
26 Feb 2026, 16:43
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | NVD-CWE-noinfo | |
| Summary |
|
|
| References | () https://help.zscaler.com/zia/release-upgrade-summary-2026?applicable_category=zscaler.net&deployment_date=2026-02-12&id=1538576 - Release Notes, Vendor Advisory | |
| CPE | cpe:2.3:a:zscaler:zscaler_internet_access_admin_portal:*:*:*:*:*:*:*:* | |
| First Time |
Zscaler
Zscaler zscaler Internet Access Admin Portal |
23 Feb 2026, 17:23
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-23 17:23
Updated : 2026-02-26 16:43
NVD link : CVE-2026-22568
Mitre link : CVE-2026-22568
CVE.ORG link : CVE-2026-22568
JSON object : View
Products Affected
zscaler
- zscaler_internet_access_admin_portal
CWE
