High
A flaw in the application authentication and authorization mechanism that depends on local validation of the session identifier allows an unauthorized, signed Java Applet JAR file to be executed.
Refer to CISA Advisory for the patch, upgrade, or suggested workaround information.