https://advisories.gitlab.com/golang/github.com/charmbracelet/soft-serve/CVE-2026-24058/
Soft Serve Affected by an Authentication Bypass | GitLab Advisory Database (GLAD)
CVE-2026-24058 Soft Serve Affected by an Authentication Bypass: What kind of vulnerability is it? Who is impacted? This issue impacts every Soft Serve...
soft serveauthentication bypassaffectedgitlabadvisory
https://www.appuntidallarete.com/fortios-fortiproxy-and-fortiswitchmanager-authentication-bypass-technical-deep-dive-cve-2022-40684/
FortiOS, FortiProxy, and FortiSwitchManager Authentication Bypass Technical Deep Dive...
Oct 14, 2022 - FortiOS, FortiProxy, and FortiSwitchManager Authentication Bypass Technical Deep Dive (CVE-2022-40684) Fortinet
technical deep diveauthentication bypassfortiosfortiproxy
https://cvefeed.io/vuln/detail/CVE-2022-23822
CVE-2022-23822 - Apache Xilinx Zynq-7000 SoC FSBL Authentication Bypass Vulnerability
Nov 21, 2024 - In this physical attack, an attacker may potentially exploit the Zynq-7000 SoC First Stage Boot Loader (FSBL) by bypassing authentication and loading a...
authentication bypasscveapachexilinxzynq
https://cxsecurity.com/issue/WLB-2024040068
Positron Broadcast Signal Processor TRA7005 v1.20 Authentication Bypass - CXSecurity.com
LiquidWorm has realised a new security note Positron Broadcast Signal Processor TRA7005 v1.20 Authentication Bypass
signal processorauthentication bypasspositronbroadcast
https://www.ioactive.com/authentication-bypass-in-tranax-remote-management-software/
Authentication Bypass In Tranax Remote Management Software - IOActive
Apr 7, 2025 - Learn about the Tranax Remote Management Software vulnerability and how it allows attackers to bypass authentication measures.
remote management softwareauthentication bypass
https://www.sentinelone.com/vulnerability-database/cve-2026-40583/
CVE-2026-40583: UltraDAG Authentication Bypass Vulnerability
CVE-2026-40583 is an authentication bypass vulnerability in UltraDAG blockchain. Learn about its impact, affected versions, and mitigation methods.
authentication bypasscvevulnerability
https://www.blackduck.com/blog/wpa-authentication-fuzz-testing.html
WPA Authentication Bypass: Fuzz Testing with Defensics | Black Duck Blog
Discover how Defensics fuzz testing tool uncovers three WPA authentication bypass vulnerabilities in wireless routers. Delve into our CyRC analysis.
authentication bypassfuzz testingblack duckwpablog
https://portswigger.net/web-security/jwt/lab-jwt-authentication-bypass-via-weak-signing-key
Lab: JWT authentication bypass via weak signing key | Web Security Academy
This lab uses a JWT-based mechanism for handling sessions. It uses an extremely weak secret key to both sign and verify tokens. This can be easily ...
web security academyjwt authenticationlabbypassvia
https://cybernoz.com/attackers-exploit-cpanel-authentication-bypass-0-day-after-poc-release/
Attackers Exploit cPanel Authentication Bypass 0-Day After PoC Release - Cybernoz
Apr 30, 2026 - A critical zero-day vulnerability, tracked as CVE-2026-41940, is currently being actively exploited across the web hosting industry. This CVSS 9.8 flaw allows...
authentication bypassattackersexploitcpanelday
https://thehackernews.com/2025/02/palo-alto-networks-patches.html?version=meter+at+null
Palo Alto Networks Patches Authentication Bypass Exploit in PAN-OS Software
Palo Alto Networks patches CVE-2025-0108, a PAN-OS flaw (CVSS 7.8) allowing authentication bypass. Update now.
palo alto networksauthentication bypasspatchesexploitpan
https://www.cysecurity.news/2021/08/12-year-old-authentication-bypass.html
12-Year-Old Authentication Bypass Vulnerability Could Allow Network Compromise - CySecurity News -...
The security flaw, tracked as CVE-2021-20090, was disclosed last week by researchers at Tenable.
year oldauthentication bypassvulnerabilitycouldallow
https://www.herodevs.com/blog-posts/cve-2026-5795-jetty-authentication-bypass-and-privilege-escalation-jaspiauthenticator
HeroDevs Blog | CVE-2026-5795: Jetty Authentication Bypass and Privilege Escalation...
CVE-2026-5795 is a CVSS 7.4 authentication bypass and privilege escalation vulnerability in Jetty's JASPIAuthenticator. Learn which versions are affected, how...
authentication bypassprivilege escalationherodevsblogcve
https://www.exploit-db.com/exploits/9337
simplePHPWeb 0.2 - 'files.php' Authentication Bypass - PHP webapps Exploit
Aug 3, 2009 - simplePHPWeb 0.2 - 'files.php' Authentication Bypass. CVE-58031CVE-2009-3158 . webapps exploit for PHP platform
authentication bypassfilesphpwebappsexploit
https://s4e.io/tools/totolink-authentication-bypass-cve-2021-42887
CVE-2021-42887 scanner - Authentication Bypass vulnerability in TOTOLINK EX1200T
Detects 'Authentication Bypass' vulnerability in TOTOLINK EX1200T affects v. 4.1.2cu.5215.
authentication bypasscvescannervulnerabilitytotolink
https://censys.com/advisory/cve-2026-41940/
April 30 Advisory: cPanel and WHM Authentication Bypass Allow Remote Admin Access [CVE-2026-41940]...
May 1, 2026 - CVE-2026-41940 is a critical pre-authentication bypass in the cPanel and WHM login flow that allows a remote unauthenticated attacker to obtain admin access to...
cpanel and whmauthentication bypassremote adminapriladvisory
https://bitninja.com/blog/critical-ollama-platform-authentication-bypass/
Critical Ollama Platform Authentication Bypass - BitNinja Security
Dec 18, 2025 - Discover the critical authentication bypass in the Ollama platform, its risks, and essential mitigation steps for server security.
authentication bypasscriticalollamaplatformbitninja
https://khalil-shreateh.com/khalil.shtml/it-highlights/security-research/44121-fortinet-fortiweb-8-0-0-authentication-bypass.html
Fortinet FortiWeb 8.0.0 Authentication Bypass | khalil shreateh
Fortinet FortiWeb 8.0.0 (and earlier 7.x versions) suffered from CVE-2023-44251,a Fortinet FortiWeb 8.0.0 (and earlier 7.x versions) suffered from...
authentication bypassfortinetfortiwebkhalil
https://www.netgear.com/no/about/security/kb/product-vulnerability-advisory-authentication-bypass/
NETGEAR Product Vulnerability Advisory_ Authentication Bypass | kb | Security Advisory | About Us |...
vulnerability advisoryauthentication bypassnetgearproductkb
https://www.vulncheck.com/advisories/seeyon-zhiyuan-oa-web-application-system-authentication-bypass
Seeyon Zhiyuan OA Web Application System 7.0 SP1 Authentication Bypass | Advisories | VulnCheck
web applicationauthentication bypassoasystemadvisories
https://security.snyk.io/vuln/SNYK-CHAINGUARDLATEST-WOLFICTL-15871527
Authentication Bypass in wolfictl | CVE-2026-34040 | Snyk
High severity (7.8) Authentication Bypass in wolfictl | CVE-2026-34040
authentication bypasscvesnyk
https://ml-archives.squid-cache.org/squid-users/2016-March/009955.html
[squid-users] Squid with LDAP-authentication: bypass selected URLs
ldap authenticationsquidusersbypassselected
https://www.kaspersky.com.au/blog/exploit-authentication-bypass-vulnerability-goanywhere-mft/33195/embed/
Authentication bypass exploit in GoAnywhere MFT | Kaspersky official blog
authentication bypassofficial blogexploitmftkaspersky
https://www.openwall.com/lists/oss-security/2019/06/11/2
oss-security - CVE-2019-12749: DBusServer DBUS_COOKIE_SHA1 authentication bypass
oss securityauthentication bypasscvedbuscookie
https://cyber.netsecops.io/articles/dotnet-soapwn-flaw-enables-authentication-bypass-and-rce/
.NET "SOAPwn" Flaw Allows Authentication Bypass and RCE in Enterprise Apps - CyberNetSec.io
Dec 20, 2025 - A critical vulnerability named "SOAPwn" has been found in .NET applications using SOAP, enabling unauthenticated attackers to achieve RCE. Microsoft has...
authentication bypassenterprise appsflawallowsrce
https://research.averlon.ai/vulnerability-intelligence/cve/CVE-2025-46572
CVE-2025-46572: Passport-wsfed-saml2 allows SAML Authentication Bypass via Signature Wrapping -...
passport-wsfed-saml2 provides passport strategy for both WS-fed and SAML2 protocol. A vulnerability present starting in version 3.0.5 up to and including...
saml authenticationcvepassportallowsbypass
https://api-security.blog/2025/09/11/flask-app-builder-has-an-authentication-bypass-vulnerability-when-using-non-auth_db-methods-3/
Flask App Builder has an Authentication Bypass vulnerability when using non AUTH_DB methods - API...
Sep 11, 2025 - Impact When Flask-AppBuilder is configured to use OAuth, LDAP, or other non-database authentication methods, the password reset endpoint remains registered and...
app builderauthentication bypassflaskvulnerabilityusing
https://community.norton.com/t/seven-asus-routers-vulnerable-to-critical-remote-authentication-bypass/231686
Seven ASUS routers vulnerable to critical remote authentication bypass - Archive - Norton Community
Jun 17, 2024 - Folks, if you own one of the listed routers please follow the suggestions in this article linked below:...
asus routersremote authenticationsevenvulnerablecritical
https://avleonov.com/2025/02/27/1513-about-authentication-bypass-pan-os-cve-2025-0108/
About Authentication Bypass - PAN-OS (CVE-2025-0108) vulnerability | Alexander V. Leonov
Feb 13, 2026 - About Authentication Bypass - PAN-OS (CVE-2025-0108) vulnerability. PAN-OS is the operating system used in all Palo Alto Network NGFWs. This vulnerability...
authentication bypassalexander vpanoscve
https://www.semperis.com/blog/golden-dmsa-what-is-dmsa-authentication-bypass/
Golden dMSA: What Is dMSA Authentication Bypass? | Semperis Research
Jan 8, 2026 - The Golden dMSA attack enables attackers to bypass authentication and generate passwords for managed service accounts in AD. Understand the risks.
what isauthentication bypassgoldendmsasemperis
https://www.redteam-pentesting.de/de/advisories/rt-sa-2011-003/
Authentication Bypass in Configuration Import and Export of ZyXEL ZyWALL USG Appliances - RedTeam...
Unauthenticated users with access to the management web interface of certain ZyXEL ZyWALL USG appliances can download and upload configuration files, that are...
import and exportauthentication bypassconfigurationzyxelusg
https://akit.cyber.ee/term/9078
authentication bypass - AKIT
authentication bypass
https://topic.alibabacloud.com/a/freesshd-freesshdexe-remote-authentication-bypass-vulnerability_3_75_32789469.html
FreeSSHd freeSSHd.exe Remote Authentication Bypass Vulnerability
Release date: 2012-3 3Updated on: Affected Systems:FreeSSHd...
remote authenticationexebypassvulnerability
https://aviatrix.ai/threat-research-center/cisco-imc-authentication-bypass-and-command-injection-vulnerabilities-2026/
Cisco IMC Authentication Bypass and Command Injection Vulnerabilities (2026)
Critical vulnerabilities in Cisco's Integrated Management Controller (IMC) allow remote attackers to gain admin access and execute commands as root. Immediate...
authentication bypasscommand injectionciscoimcvulnerabilities
https://spring.io/security/cve-2026-22731/
CVE-2026-22731: Authentication Bypass under Actuator Health groups paths
Level up your Java code and explore what Spring can do for you.
authentication bypasshealth groupscveactuatorpaths
https://www.thestack.technology/new-cisco-vulnerabilities-authentication-fails/
Five Cisco products vulnerable to a CVSS 10 authentication bypass
Apr 4, 2025 - Five Cisco products vulnerable to CVSS 10 critical vulnerability that lets an unauthenticated, remote attacker bypass authentication controls
cisco productsauthentication bypassfivevulnerablecvss
https://kalilinuxtutorials.com/cve-2024-55591/
CVE-2024-55591 : Fortinet FortiOS Authentication Bypass
Jan 31, 2025 - CVE-2024-55591 is a critical authentication bypass vulnerability affecting Fortinet's FortiOS and FortiProxy systems. This flaw, rated with a
authentication bypasscvefortinetfortios
https://techsecinfo.com/progress-patches-critical-moveit-automation-bug-enabling-authentication-bypass/
Progress Patches Critical MOVEit Automation Bug Enabling Authentication Bypass - TechSecInfo
May 4, 2026 - Progress Software has released updates to address two security flaws in MOVEit Automation, including a critical bug that could result in an authentication...
moveit automationauthentication bypassprogresspatchescritical
https://community.f5.com/discussions/technicalforum/apmswg-explicit-proxy-with-authentication-bypass/316867
APM/SWG explicit-proxy with authentication bypass | DevCentral
Hello!We are setting up a small explicit Web-gateway using F5 BigIP APM and SWG. See...
authentication bypassapmswgexplicitproxy