A vulnerability categorized as critical has been discovered in OpenIdentityPlatform OpenAM. This issue affects the function jato.clientSession. Such manipulation leads to deserialization.

This vulnerability is uniquely identified as CVE-2026-33439. The attack can be launched remotely. No exploit exists.