authentication-bypass
21 articles with this tag
CRITICAL
INFO
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
MEDIUM
CRITICAL
From Clawdbot to Moltbot to OpenClaw: Security Experts Detail Critical Vulnerabilities and 6 Immediate Hardening Steps for the Viral AI Agent
TikTok's invasive Privacy Policy - Talkin' Bout [infosec] News 2026-01-26 #infosec #news
USN-8008-1: Keystone Middleware vulnerability
Exploiting CVE-2025-49825 (authentication bypass vulnerability in Teleport)
USN-7992-1: Inetutils vulnerability
VU#458022: Open5GS WebUI uses a hard-coded secrets including JSON Web Token signing key
Fortinet admits FortiGate SSO bug still exploitable despite December patch
Critical GNU InetUtils telnetd Flaw Lets Attackers Bypass Login and Gain Root Access
Fortinet Confirms Active FortiCloud SSO Bypass on Fully Patched FortiGate Firewalls
Fortinet’s latest zero-day vulnerability carries frustrating familiarities for customers
CVE-2025-59100: The web interface offers a functionality to export the internal SQLite database. After executing the...
CVE-2025-59098: The Access Manager is offering a trace functionality to debug errors and issues with the device. The...
CVE-2025-59097: The exos 9300 application can be used to configure Access Managers (e.g. 92xx, 9230 and 9290). The c...
CVE-2025-59093: Exos 9300 instances are using a randomly generated database password to connect to the configured MS...
CVE-2025-59092: An RPC service, which is part of exos 9300, is reachable on port 4000, run by the process FSMobilePh...
CVE-2025-59091: Multiple hardcoded credentials have been identified, which are allowed to sign-in to the exos 9300 d...
CVE-2025-59090: On the exos 9300 server, a SOAP API is reachable on port 8002. This API does not require any authent...
Fortinet Patches CVE-2026-24858 After Active FortiOS SSO Exploitation Detected
SolarWinds Fixes Four Critical Web Help Desk Flaws With Unauthenticated RCE and Auth Bypass
CVE-2026-1410: A vulnerability was detected in Beetel 777VR1 up to 01.00.09/01.00.09_55. Impacted is an unknown fun...
CVE-2026-23760: SmarterTools SmarterMail Authentication Bypass Using an Alternate Path or Channel Vulnerability