


Perceptive Security
SOC/SIEM Consultancy

Use of hard-coded cryptographic key vulnerability in Bilin Software and Informatics Consultancy Inc. HUMANIST Digital Human Resources allows Read Sensitive Cons…
Published:
4 augustus 2026 om 00:00:00
Alert date:
4 augustus 2026 om 13:01:30
Source:
nvd.nist.gov
Enterprise Applications, Identity & Access
A hard-coded cryptographic key vulnerability has been identified in Bilin Software and Informatics Consultancy Inc.'s HUMANIST Digital Human Resources platform. The vulnerability allows attackers to read sensitive constants within the executable, potentially exposing cryptographic secrets. The flaw affects HUMANIST Digital Human Resources versions from 26.0 up to but not including 26.1. The issue is tracked as CVE-2026-14804 and was reported via the Turkish cybersecurity authority siberguvenlik.gov.tr. Hard-coded cryptographic keys pose a significant risk as they cannot be rotated without a software update. Organizations using the affected version should upgrade to version 26.1 or later to mitigate the risk.
Technical details
Mitigation steps:
Affected products:
HUMANIST Digital Human Resources 26.0
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-14804
https://siberguvenlik.gov.tr/guvenlik-bildirimleri/detay/tr-26-0737
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
