CVE-2026-22568

Improper neutralization of special elements in user-supplied input within the ZIA Admin UI could allow an authenticated administrator to access or retrieve unauthorized internal information in rare conditions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:zscaler:zscaler_internet_access_admin_portal:*:*:*:*:*:*:*:*

History

26 Feb 2026, 16:43

Type Values Removed Values Added
CWE NVD-CWE-noinfo
Summary
  • (es) Neutralización incorrecta de elementos especiales en la entrada proporcionada por el usuario dentro de la IU de administración de ZIA podría permitir a un administrador autenticado acceder o recuperar información interna no autorizada en raras condiciones.
References () https://help.zscaler.com/zia/release-upgrade-summary-2026?applicable_category=zscaler.net&deployment_date=2026-02-12&id=1538576 - () https://help.zscaler.com/zia/release-upgrade-summary-2026?applicable_category=zscaler.net&deployment_date=2026-02-12&id=1538576 - Release Notes, Vendor Advisory
CPE cpe:2.3:a:zscaler:zscaler_internet_access_admin_portal:*:*:*:*:*:*:*:*
First Time Zscaler
Zscaler zscaler Internet Access Admin Portal

23 Feb 2026, 17:23

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-23 17:23

Updated : 2026-02-26 16:43


NVD link : CVE-2026-22568

Mitre link : CVE-2026-22568

CVE.ORG link : CVE-2026-22568


JSON object : View

Products Affected

zscaler

  • zscaler_internet_access_admin_portal
CWE
CWE-20

Improper Input Validation

NVD-CWE-noinfo