CVE coverage
View on NVD →
CVE-2026-66372
CVSS 6.8
no coverage
The affected products use insufficiently random values, which allows web session tokens to be predictable, bounding token entropy to the seed space.
Detection rules
No detection found — yet
None of Sigma, Elastic, Splunk ESCU, YARA, Microsoft Sentinel, Snort, or Suricata currently has a rule referencing CVE-2026-66372.