CVE-2026-23781
Critical Severity
Description
An issue was discovered in BMC Control-M/MFT 9.0.20 through 9.0.22. A set of default debug user credentials is hardcoded in cleartext within the application ...
Related Vulnerabilities
- CVE-2026-5479: In wolfSSL's EVP layer, the ChaCha20-Poly1305 AEAD decryption path in wolfSSL_EVP_CipherFinal (and r HIGH
- CVE-2026-35669: OpenClaw before 2026.3.25 contains a privilege escalation vulnerability in gateway-authenticated plu HIGH
- CVE-2026-40217: LiteLLM through 2026-04-08 allows remote attackers to execute arbitrary code via bytecode rewriting HIGH
- CVE-2026-35041: fast-jwt has a ReDoS when using RegExp in allowed* leading to CPU exhaustion during token verificati MEDIUM
- CVE-2026-6027: A weakness has been identified in Totolink A7100RU 7.4cu.2313_b20191024. This issue affects the func CRITICAL
Related Coverage
Threat Actors