PatchSiren

Perforce CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Perforce CVE published 2026-07-16

CVE-2026-14254

CVE-2026-14254 is a high-severity vulnerability in Delphix Continuous Data, involving a race condition in the account lockout mechanism. This condition allows an attacker to bypass the lockout threshold by making concurrent authentication requests, defeating brute-force protections. The vulnerability enables continued password guessing against a targeted account, posing a significant risk to Delphix Conti [truncated]

HIGH Perforce CVE published 2026-05-18

CVE-2026-6902

CVE-2026-6902 describes a code-injection weakness in the P4 Server command-line client that was fixed before version 2025.2 Patch 2. NVD rates the issue HIGH with a CVSS v4 score of 7.7 and maps it to CWE-94. The available record is brief, but it indicates a network-reachable issue that may require user interaction and could affect confidentiality, integrity, and availability if triggered.