VulnSea

CWE-208

CVEs classified under CWE-208, newest first.

31 CVEsRSS

CVE-2026-58272Medium· 5.3
yesterday

Sync-in Server is an open-source platform for file storage, sharing, collaboration, and syncing

Sync-in Server is an open-source platform for file storage, sharing, collaboration, and syncing. Versions prior to 2.4.1 contain an observable timing discrepancy in the login endpoint because authentication attempts for nonexistent accou…

SunlitSync-in · servervia NVD
CVE-2026-77582Medium· 6.9
yesterday

Tinyauth is an authentication and authorization server

Tinyauth is an authentication and authorization server. Prior to 5.1.0, Tinyauth exposes a remotely observable timing difference between authentication attempts for existing and nonexistent local usernames. internal/controller/user_contr…

Sunlittinyauthapp · tinyauthvia NVD
CVE-2026-72701Low· 3.7
5d ago

Grav: Non constant time nonce comparison in Utils::verifyNonce() used for CSRF protection

Grav: Non constant time nonce comparison in Utils::verifyNonce() used for CSRF protection

Sunlitgetgrav · getgrav/gravEPSS 0.18%via GHSA
CVE-2026-70658High· 7.4PoC
1w ago

Pay is a payments engine for Ruby on Rails 6.0 and higher

Pay is a payments engine for Ruby on Rails 6.0 and higher. Prior to 11.6.2, Pay::Webhooks::PaddleBillingController#valid_signature? in app/controllers/pay/webhooks/paddle_billing_controller.rb compares the computed 64-character SHA-256 H…

Midnightpay-rails · payEPSS 0.50%via NVD
CVE-2023-24035Low· 3.5
1w ago

An issue was discovered in Nagios XI before 5.9.3

An issue was discovered in Nagios XI before 5.9.3. The is_insecure_login_authenticated function uses a insecure timing comparison that leads to an attacker being able to bruteforce the admin password, by measuring timing differences in t…

SunlitNagios · Nagios XIEPSS 0.77%via NVD
CVE-2026-87737Medium· 5.9
1w ago

An issue was discovered in the mirage-crypto-ec package before 2.4.0 for OCaml

An issue was discovered in the mirage-crypto-ec package before 2.4.0 for OCaml. There is a timing side channel for NIST elliptic-curve scalar multiplication: the time required for a lookup can depend on a secret.

SunlitOCaml · mirage-crypto-ecEPSS 0.21%via NVD
CVE-2026-16037High· 7.5
2w ago

Observable timing discrepancy vulnerability in PayTR Payment and Electronic Money Institution Inc

Observable timing discrepancy vulnerability in PayTR Payment and Electronic Money Institution Inc. PayTR Virtual Pos iFrame API (v9x) WHMCS Module allows Black Box Reverse Engineering. This issue affects PayTR Virtual Pos iFrame API (v9…

TwilightPayTR Payment and Electronic Money Institution Inc. · PayTR Virtual Pos iFrame API (v9x) WHMCS ModuleEPSS 0.30%via NVD
CVE-2026-81159Low· 3.7
2w ago

Observable Timing Discrepancy vulnerability in Drupal Commerce CyberSource allows Brute Force

Observable Timing Discrepancy vulnerability in Drupal Commerce CyberSource allows Brute Force. This issue affects Commerce CyberSource versions: from 0.0.0 to 1.10.0.

Sunlitcentarro · commerce_cybersourceEPSS 0.26%via NVD
CVE-2026-84308Medium· 6.3
3w ago

phpseclib is a PHP secure communications library

phpseclib is a PHP secure communications library. Prior to 3.0.57 and 4.0.1, pure-PHP X25519 scalar multiplication in phpseclib/Math/PrimeField/Integer.php performs data-dependent conditional modular reductions in add() and subtract(). D…

Sunlitphpseclib · phpseclibEPSS 0.21%via NVD
CVE-2026-82449Medium· 5.3
3w ago

Cockpit CMS before 2.14.1 contains an account enumeration vulnerability in the auth check endpoint due to timing discrepancies in password verification

Cockpit CMS before 2.14.1 contains an account enumeration vulnerability in the auth check endpoint due to timing discrepancies in password verification. Attackers can measure response times across multiple requests to determine which acc…

SunlitEPSS 0.24%via NVD
CVE-2026-55785Low· 3.7
3w ago

free5GC is an open-source implementation of the 5G core network

free5GC is an open-source implementation of the 5G core network. Prior to 1.4.5, the AUSF component performs cryptographic authentication comparisons in internal/sbi/processor/ue_authentication.go with ordinary equality helpers. Auth5gAk…

Sunlitfree5gc · github.com/free5gc/ausfEPSS 0.28%via NVD
GHSA-px9v-979x-qmh9Medium· 3.7
4w ago

Duplicate Advisory: Grav: Non constant time nonce comparison in Utils::verifyNonce() used for CSRF protection

Duplicate Advisory: Grav: Non constant time nonce comparison in Utils::verifyNonce() used for CSRF protection

Sunlitgetgrav · getgrav/gravvia GHSA
CVE-2026-72700High· 7.5
4w ago

The getgrav/grav-plugin-login Composer plugin before 3.9.1 (used by Grav) compares password reset and account activation tokens using a non-constant-time === string comparison instead of hash_equals() in classes/Controller.php (taskReset…

The getgrav/grav-plugin-login Composer plugin before 3.9.1 (used by Grav) compares password reset and account activation tokens using a non-constant-time === string comparison instead of hash_equals() in classes/Controller.php (taskReset…

TwilightEPSS 0.26%via NVD
CVE-2026-53525High· 7.4
1mo ago

WeeChat (Wee Enhanced Environment for Chat) is a free chat client

WeeChat (Wee Enhanced Environment for Chat) is a free chat client. In versions 0.3.1 through 4.9.0, the WeeChat relay authentication uses non-constant-time string comparison functions (weechat_strcasecmp and strcmp) to verify password ha…

TwilightEPSS 0.25%via NVD
CVE-2026-44255Medium· 5.3
1mo ago

Wazuh is a free and open source platform used for threat prevention, detection, and response

Wazuh is a free and open source platform used for threat prevention, detection, and response. From 4.0.0 until 4.14.6 and 5.0.0-beta2, AuthenticationManager.check_user() in framework/wazuh/rbac/orm.py performs check_password_hash() only …

Sunlitwazuh · wazuhEPSS 0.49%via NVD
GHSA-92hr-gmr6-h8cpMedium
1mo ago

Etherpad addressed weak token RNG, login timing, plugin path handling, API request handling

Etherpad addressed weak token RNG, login timing, plugin path handling, API request handling

Sunlitep_etherpad-lite · ep_etherpad-litevia GHSA
CVE-2026-6727Medium· 5.9
1mo ago

A timing side-channel vulnerability exists in the RSA OAEP decryption implementation

A timing side-channel vulnerability exists in the RSA OAEP decryption implementation. A privileged local attacker with access to the TPM command interface may be able to exploit timing differences to recover information that could allow …

SunlitEPSS 0.20%via NVD
CVE-2026-8794NonePoC
1mo ago

PaperCut NG/MF contains an observable timing discrepancy in its authentication component

PaperCut NG/MF contains an observable timing discrepancy in its authentication component. An unauthenticated remote attacker can exploit this vulnerability to perform username enumeration by measuring response times during login attempts…

TwilightEPSS 0.39%via NVD
CVE-2026-69247Medium· 5.9
1mo ago

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers

cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 until 50.0.0, pkcs7_decrypt_der, pkcs7_decrypt_pem, and pkcs7_decrypt_smime reported the outcome of decrypting a Recipien…

SunlitRed Hat · Red Hat Enterprise Linux 10EPSS 0.18%via NVD
CVE-2026-59218Medium· 5.3
2mo ago

Open WebUI: Account enumeration via observable login timing discrepancy

Open WebUI: Account enumeration via observable login timing discrepancy

Sunlitopen-webui · open-webuiEPSS 0.41%via GHSA
CVE-2026-54736None
2mo ago

Phalcon is a high-performance, full-stack PHP framework

Phalcon is a high-performance, full-stack PHP framework. Prior to 5.14.1, Phalcon\Encryption\Crypt::decrypt compares the attacker-supplied HMAC tag against the freshly computed HMAC using PHP/Zephir identity comparison, which lowers to a…

SunlitEPSS 0.18%via NVD
GHSA-mjgf-xj26-9qf9High· 7.4
2mo ago

pay-rails/pay: non-constant-time HMAC comparison in Paddle Billing webhook signature verifier

pay-rails/pay: non-constant-time HMAC comparison in Paddle Billing webhook signature verifier

Twilightpay · payvia GHSA
CVE-2026-48166Medium· 5.3
3mo ago

Filament: Timing-based user enumeration on login page

Filament: Timing-based user enumeration on login page

Sunlitfilament · filament/filamentEPSS 0.34%via GHSA
GHSA-5739-39v2-5754Medium
3mo ago

PHP JWT Library: RSA1_5 (RSAES-PKCS1-v1_5) decryption lacks implicit rejection, exposing a Bleichenbacher/Marvin padding oracle

PHP JWT Library: RSA1_5 (RSAES-PKCS1-v1_5) decryption lacks implicit rejection, exposing a Bleichenbacher/Marvin padding oracle

Sunlitweb-token · web-token/jwt-libraryvia GHSA
CVE-2026-54411Medium· 5.9
3mo ago

Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module's plaintext-password comparison path in modules/pam_userdb/pam_userdb.c that allows a local or network-adjacent attacker able to repeate…

Linux-PAM through 1.7.2 contains an observable timing discrepancy (CWE-208) in the pam_userdb module's plaintext-password comparison path in modules/pam_userdb/pam_userdb.c that allows a local or network-adjacent attacker able to repeate…

SunlitRed Hat · Red Hat Enterprise Linux AppStream (v. 9)EPSS 0.32%via NVD
CVE-2026-48859Medium· 5.3
3mo ago

Observable Timing Discrepancy vulnerability in Erlang/OTP ssh (ssh_auth, ssh_options modules) allows unauthenticated remote username enumeration via timing side-channel in password authentication. When the SSH daemon is configured with …

Observable Timing Discrepancy vulnerability in Erlang/OTP ssh (ssh_auth, ssh_options modules) allows unauthenticated remote username enumeration via timing side-channel in password authentication. When the SSH daemon is configured with …

Sunliterlang · erlang/otpEPSS 0.35%via NVD
CVE-2026-5419Low· 3.7
3mo ago

A flaw was found in gnutls

A flaw was found in gnutls. The PKCS#7 padding check, performed during decryption, was not constant-time. This timing side-channel could allow a remote attacker to potentially leak sensitive information about the padding bytes through ob…

SunlitEPSS 0.38%via NVD
CVE-2026-47783High· 8.1
4mo ago

In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.

In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon as a valid username is found by sasl_server_userdb_checkpass.

Twilightmemcached · memcachedEPSS 1.3%via NVD
CVE-2026-21713Medium· 5.9
5mo ago

A flaw in Node.js HMAC verification uses a non-constant-time comparison when validating user-provided signatures, potentially leaking timing information proportional to the number of matching bytes

A flaw in Node.js HMAC verification uses a non-constant-time comparison when validating user-provided signatures, potentially leaking timing information proportional to the number of matching bytes. Under certain threat models where high…

Sunlitnodejs · node.jsEPSS 0.39%via NVD
CVE-2025-59425High· 7.5
11mo ago

vllm: Timing Attack in vLLM API Token Verification Leading to Authentication Bypass (CVE-2025-59425)

A flaw was found in vLLM’s API token authentication logic, where token comparisons were not performed in constant time. This weakness could allow an attacker to exploit timing differences to guess valid tokens and bypass authentication.

TwilightRed Hat · Red Hat OpenShift AI 3.3EPSS 0.57%via CSAF
CWE-208 vulnerabilities (CVEs) · VulnSea