CVE-2026-22568: Unauthorized information retrieval in ZIA Admin UI
Improper neutralization of special elements in user-supplied input within the ZIA Admin UI could allow an authenticated administrator to access or retrieve unauthorized internal information in rare conditions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-22568?
CVE-2026-22568 is considered a medium severity vulnerability due to its potential for unauthorized information retrieval.
How do I fix CVE-2026-22568?
To remediate CVE-2026-22568, ensure that you upgrade the Zscaler Internet Access Admin Portal to version 6.2r or later.
Who is affected by CVE-2026-22568?
CVE-2026-22568 affects users of the Zscaler Internet Access Admin Portal versions prior to 6.2r.
What kind of attack does CVE-2026-22568 allow?
CVE-2026-22568 allows an authenticated administrator to retrieve unauthorized internal information under certain conditions.
Is CVE-2026-22568 easy to exploit?
Exploitation of CVE-2026-22568 is considered rare and may require specific circumstances to occur.