VulnSea

CWE-521

CVEs classified under CWE-521, newest first.

4 CVEsRSS

CVE-2026-85216Critical· 9.8
2w ago

MISP contains an authentication bypass vulnerability in its LDAP and LinOTP authentication components due to insufficient validation of user-supplied credentials. The custom LdapAuthenticate and LinOTPAuthenticate components replace Cak…

MISP contains an authentication bypass vulnerability in its LDAP and LinOTP authentication components due to insufficient validation of user-supplied credentials. The custom LdapAuthenticate and LinOTPAuthenticate components replace Cak…

Midnightmisp-project · mispEPSS 0.50%via NVD
CVE-2026-73778High· 8.1
3w ago

A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access

A vulnerability exists in the Credential Manager component that may allow for unauthorized administrative access. An unauthenticated remote attacker could exploit this vulnerability on a device in its factory-default or post-ZTP state be…

Twilighthpe · arubaos-cxEPSS 0.28%via NVD
CVE-2026-19293High· 8.8
1mo ago

SMP security request (from peripheral) does not include the maximum encryption key size supported

SMP security request (from peripheral) does not include the maximum encryption key size supported. Using a key with less than the maximum keysize makes brute-forcing the key easier. See V6 in BLERP paper linked below.

TwilightEPSS 0.13%via NVD
CVE-2026-33771High· 7.4
5mo ago

A Weak Password Requirements vulnerability in the password management function of Juniper Networks CTP OS might allow an unauthenticated, network-based attacker to exploit weak passwords of local accounts and potentially take full contro…

A Weak Password Requirements vulnerability in the password management function of Juniper Networks CTP OS might allow an unauthenticated, network-based attacker to exploit weak passwords of local accounts and potentially take full contro…

Twilightjuniper · ctop_osEPSS 0.26%via NVD
CWE-521 vulnerabilities (CVEs) · VulnSea