CVE-2026-33448
Format string vulnerability in MacOS clients prior to 14.50
Published: April 29, 2026
CVE-2026-33448 is a format string vulnerability in the logging subsystem of Secure Access client for MacOS prior to 14.50. Attackers with control of a modified server can force the client to dump the contents of a small portion of memory to the log files potentially revealing secrets.