Vulnerability Description
When importing connections in Compass it is possible to override some connection options that are otherwise can't be changed via connection form. In particular it is possible to provide a custom browser open command for OIDC auth flow that is usually can be set only globally via Compass settings.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-14881?
CVE-2026-14881 is a vulnerability with a CVSS score of 7.8 (HIGH). When importing connections in Compass it is possible to override some connection options that are otherwise can't be changed via connection form. In particular it is possible to provide a custom brows...
How severe is CVE-2026-14881?
CVE-2026-14881 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-14881?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.