Threats·Banking & FintechBreakingSConnect Browser PKI Native Host Flaws Permit Unauthenticated Remote Code Execution (CVE-2026-18397)A critical vulnerability in the SConnect browser digital signature native host component allows malicious websites to achieve unauthenticated remote code execution.Priya Raman2 Oct 20269 min read