Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-40178

Опубликовано: 10 апр. 2026
Источник: debian
EPSS Низкий

Описание

ajenti.plugin.core defines all necessary core elements to allow Ajenti to run properly. Prior to 0.112, if the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. This vulnerability is fixed in 0.112.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ajentiitppackage

EPSS

Процентиль: 14%
0.00232
Низкий

Связанные уязвимости

CVSS3: 5.9
nvd
4 месяца назад

ajenti.plugin.core defines all necessary core elements to allow Ajenti to run properly. Prior to 0.112, if the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. This vulnerability is fixed in 0.112.

CVSS3: 5.9
github
4 месяца назад

ajenti.plugin.core has race conditions in 2FA

EPSS

Процентиль: 14%
0.00232
Низкий