Exposure of the QKEY (used as
input into the ‘OTA-Quantum’ device registration process) and internal
system keys via an unauthenticated and unencrypted HTTP GET method in the Arqit Symmetric Key Agreement Platform.
This issue affects Symmetric Key Agreement Platform: before 26.03.
References
| Link | Resource |
|---|---|
| https://www.cvcn.gov.it/cvcn/cve/CVE-2026-33583 |
Configurations
No configuration.
History
13 May 2026, 19:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-13 19:17
Updated : 2026-05-14 17:07
NVD link : CVE-2026-33583
Mitre link : CVE-2026-33583
CVE.ORG link : CVE-2026-33583
JSON object : View
Products Affected
No product.
CWE
CWE-749
Exposed Dangerous Method or Function
