CVE-2026-40177 - Password bypass when 2FA is activated
CVE ID :CVE-2026-40177
Published : April 10, 2026, 8:16 p.m. | 3 hours, 52 minutes ago
Description :ajenti.plugin.core defines all necessary core elements to allow Ajenti to run properly. Pr...
Related Vulnerabilities
- CVE-2026-34486: Missing Encryption of Sensitive Data vulnerability in Apache Tomcat due to the fix for CVE-2026-2914 HIGH
- CVE-2025-62718: Axios has a NO_PROXY Hostname Normalization Bypass Leads to SSRF MEDIUM
- CVE-2026-35662: OpenClaw before 2026.3.22 fails to enforce controlScope restrictions on the send action, allowing le MEDIUM
- CVE-2026-33551: An issue was discovered in OpenStack Keystone 14 through 26 before 26.1.1, 27.0.0, 28.0.0, and 29.0. LOW
- CVE-2026-34727: Vikunja has TOTP Two-Factor Authentication Bypass via OIDC Login Path HIGH
Related Coverage
Threat Actors