PatchSiren

Thales CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

HIGH Thales CVE published 2026-04-07

CVE-2026-3457

CVE-2026-3457 is a HIGH severity vulnerability in Thales Sentinel LDK Runtime on Windows, allowing Stored Cross-site Scripting. The vulnerability was published on April 7, 2026, and has a CVSS score of 7.1. The vulnerability was fixed in Sentinel LDK Runtime 10.22. Users of affected versions should upgrade to the latest version. The CVE record and NVD detail provide additional information on the vulnerability.