A critical vulnerability identified as CVE-2026-84115 affects Cleo Harmony versions through 5.8.1.10, with the weakness tied to the platform’s JWT Refresh Token Handler and the /api/connections endpoint.
First seen on thecyberexpress.com
Jump to article: thecyberexpress.com/cve-2026-84115-cleo-harmony-jwt-refresh-token/
![]()

