Portal for ArcGIS vulnerability

There is an information disclosure vulnerability in Esri Portal for ArcGIS versions 11.5 through 12.0 and earlier that may allow a remote, unauthenticated attacker to reflect sensitive information in a http response body.

Published 21 Aug 2026Updated 11 Sep 20261 sources
CVSS 5.9

Source timeline

CVE record published by NVDView source ↗