Hitachi Energy Asset Suite
No complete fix is indicated yet.
No official fix confirmed yet
Until a fix ships, follow the vendor's mitigations, limit exposure of affected systems, and watch this record for a patch.
Asset Suite allows unauthenticated users to access PropertiesReloadServlet, CacheFlushServlet, MetadataCacheFlushServlet and ResourceBundleReloadServlet, which could result in denial-of-service conditions affecting application availability. These servlets are designed to perform specific functions within production environment depending on how the Asset Suite application is configured.
Source: NIST National Vulnerability Database. Official vulnerability data, reproduced as published.
Developments from the last 30 days, newest first.
CVE-2026-11796 scored CVSS 5.1
Basis: NIST National Vulnerability Database
Hitachi Energy Asset Suite
Basis: CISA Cybersecurity Advisories (government advisory)
No complete fix is indicated yet.