authentication-bypass
21 articles with this tag
CRITICAL
INFO
HIGH
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
HIGH
HIGH
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
CRITICAL
MEDIUM
From Clawdbot to Moltbot to OpenClaw: Security Experts Detail Critical Vulnerabilities and 6 Immediate Hardening Steps for the Viral AI Agent
TikTok's invasive Privacy Policy - Talkin' Bout [infosec] News 2026-01-26 #infosec #news
USN-8008-1: Keystone Middleware vulnerability
Exploiting CVE-2025-49825 (authentication bypass vulnerability in Teleport)
USN-7992-1: Inetutils vulnerability
VU#458022: Open5GS WebUI uses a hard-coded secrets including JSON Web Token signing key
Fortinet Confirms Active FortiCloud SSO Bypass on Fully Patched FortiGate Firewalls
Critical GNU InetUtils telnetd Flaw Lets Attackers Bypass Login and Gain Root Access
Fortinet admits FortiGate SSO bug still exploitable despite December patch
Fortinet’s latest zero-day vulnerability carries frustrating familiarities for customers
CVE-2025-59090: On the exos 9300 server, a SOAP API is reachable on port 8002. This API does not require any authent...
CVE-2025-59091: Multiple hardcoded credentials have been identified, which are allowed to sign-in to the exos 9300 d...
CVE-2025-59092: An RPC service, which is part of exos 9300, is reachable on port 4000, run by the process FSMobilePh...
CVE-2025-59093: Exos 9300 instances are using a randomly generated database password to connect to the configured MS...
CVE-2025-59097: The exos 9300 application can be used to configure Access Managers (e.g. 92xx, 9230 and 9290). The c...
CVE-2025-59098: The Access Manager is offering a trace functionality to debug errors and issues with the device. The...
CVE-2025-59100: The web interface offers a functionality to export the internal SQLite database. After executing the...
SolarWinds Fixes Four Critical Web Help Desk Flaws With Unauthenticated RCE and Auth Bypass
Fortinet Patches CVE-2026-24858 After Active FortiOS SSO Exploitation Detected
CVE-2026-23760: SmarterTools SmarterMail Authentication Bypass Using an Alternate Path or Channel Vulnerability
CVE-2026-1410: A vulnerability was detected in Beetel 777VR1 up to 01.00.09/01.00.09_55. Impacted is an unknown fun...