{"id":"CVE-2026-76719","title":"A security vulnerability in HPE OneView may be exploited remotely to perform session hijacking, data theft or other unauthorized actions.","summary":"A security vulnerability in HPE OneView may be exploited remotely to perform session hijacking, data theft or other unauthorized actions.","severity":"high","cvss":8.2,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:L/A:N","cwe":["CWE-79"],"vendor":"Hewlett Packard Enterprise","product":"HPE OneView","affected":["hpe_oneview < 11.40"],"published":"2026-09-29","updated":"2026-09-29","sourceUpdated":"2026-09-29T12:17:11.820","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-76719","references":[{"url":"https://support.hpe.com/hpesc/public/docDisplay?docId=hpesbgn05140en_us&docLocale=en_US","label":"security-alert@hpe.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-09-29T11:12:00.795501Z"},"ingestedAt":"2026-09-29T10:31:36.312Z","slug":"CVE-2026-76719","body":"## Overview\n\nA security vulnerability in HPE OneView may be exploited remotely to perform session hijacking, data theft or other unauthorized actions.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":45,"depthScoreParts":{"impact":45.1,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}