CWE-203: Observable Discrepancy (CVE-2026-59502)
CVE-2026-59502 is a medium severity vulnerability categorized as CWE-203: Observable Discrepancy. It involves an observable discrepancy that could potentially leak information. The vulnerability has a CVSS 3.1 base score of 5.3, indicating a moderate impact primarily on confidentiality without affecting integrity or availability. No affected software versions or patch information are provided. There are no known exploits in the wild and no vendor advisory or remediation details available at this time.
AI Analysis
Technical Summary
CVE-2026-59502 corresponds to a CWE-203: Observable Discrepancy vulnerability. This type of vulnerability arises when a system reveals information through observable differences in behavior or output that can be used to infer sensitive data. The CVSS 3.1 vector indicates the vulnerability is remotely exploitable without privileges or user interaction, with low attack complexity, and impacts confidentiality only. No specific affected software versions or ecosystems are identified, and no patch or mitigation details are provided.
Potential Impact
The vulnerability impacts confidentiality by potentially allowing an attacker to observe discrepancies that leak information. There is no impact on integrity or availability. The moderate CVSS score reflects this limited impact scope. No known active exploitation has been reported.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Since no vendor advisory or patch information is provided, no specific mitigation steps can be recommended at this time.
CWE-203: Observable Discrepancy (CVE-2026-59502)
Description
CVE-2026-59502 is a medium severity vulnerability categorized as CWE-203: Observable Discrepancy. It involves an observable discrepancy that could potentially leak information. The vulnerability has a CVSS 3.1 base score of 5.3, indicating a moderate impact primarily on confidentiality without affecting integrity or availability. No affected software versions or patch information are provided. There are no known exploits in the wild and no vendor advisory or remediation details available at this time.
CVSS v3.1
Score 5.3medium
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-59502 corresponds to a CWE-203: Observable Discrepancy vulnerability. This type of vulnerability arises when a system reveals information through observable differences in behavior or output that can be used to infer sensitive data. The CVSS 3.1 vector indicates the vulnerability is remotely exploitable without privileges or user interaction, with low attack complexity, and impacts confidentiality only. No specific affected software versions or ecosystems are identified, and no patch or mitigation details are provided.
Potential Impact
The vulnerability impacts confidentiality by potentially allowing an attacker to observe discrepancies that leak information. There is no impact on integrity or availability. The moderate CVSS score reflects this limited impact scope. No known active exploitation has been reported.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Since no vendor advisory or patch information is provided, no specific mitigation steps can be recommended at this time.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- GHSA-675v-7q85-gw28
- Osv Schema Version
- 1.4.0
- Aliases
- ["CVE-2026-59502"]
- Database Specific Severity
- MODERATE
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 6a7e037bbf8831d5398fa3ca
Added to database: 08/13/2026, 17:48:43 UTC
Last enriched: 08/13/2026, 18:16:49 UTC
Last updated: 09/29/2026, 01:47:43 UTC
Views: 57
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.