CVE-2026-76142
Insufficient authentication and access control on the internal-only IPC SOAP endpoint of the Genian NAC/ZTNA policy server allows an unauthenticated attacker to invoke internal functions
- Published Oct 1, 2026
- CVSS 9.3 critical
- 0.3% chance of exploitation in the next 30 days (EPSS)