Authentication Bypass Vulnerabilities

6 advisories classified as Authentication Bypass

6

Total CVEs

4

Critical

2

High

CVE-2018-25236

Apr 3, 2026

Critical (9.8)

Hirschmann HiOS and HiSecOS products RSP, RSPE, RSPS, RSPL, MSP, EES, EESX, GRS, OS, RED, EAGLE contain an authentication bypass vulnerability in the HTTP(S) management module that allows unauthentica...

Read Advisory

CVE-2026-32974

Mar 29, 2026

High (8.6)

OpenClaw before 2026.3.12 contains an authentication bypass vulnerability in Feishu webhook mode when only verificationToken is configured without encryptKey, allowing acceptance of forged events. Una...

Read Advisory

CVE-2019-25510

Mar 12, 2026

High (8.2)

Jettweb PHP Hazir Haber Sitesi Scripti V2 contains an authentication bypass vulnerability in the administration panel that allows unauthenticated attackers to gain administrative access by exploiting ...

Read Advisory

CVE-2026-21718

Feb 27, 2026

Critical (10.0)

An authentication bypass vulnerability exists in Copeland XWEB Pro version 1.12.1 and prior, enabling any attackers to bypass the authentication requirement and achieve pre-authenticated code execut...

Read Advisory

CVE-2026-2624

Feb 25, 2026

Critical (9.8)

Missing Authentication for Critical Function vulnerability in ePati Cyber ​​Security Technologies Inc. Antikor Next Generation Firewall (NGFW) allows Authentication Bypass.This issue affects Antikor N...

Read Advisory

CVE-2026-2635

Feb 20, 2026

Critical (9.8)

MLflow Use of Default Password Authentication Bypass Vulnerability. This vulnerability allows remote attackers to bypass authentication on affected installations of MLflow. Authentication is not requi...

Read Advisory

Never Miss a Critical Alert

CVE advisories, breach reports, and threat intel — delivered daily to your inbox.