Количество 5
Количество 5
CVE-2026-40542
Missing critical step in authentication in Apache HttpClient 5.6 allows an attacker to cause the client to accept SCRAM-SHA-256 authentication without proper mutual authentication verification. Users are recommended to upgrade to version 5.6.1, which fixes this issue.
CVE-2026-40542
Missing critical step in authentication in Apache HttpClient 5.6 allows an attacker to cause the client to accept SCRAM-SHA-256 authentication without proper mutual authentication verification. Users are recommended to upgrade to version 5.6.1, which fixes this issue.
CVE-2026-40542
Missing critical step in authentication in Apache HttpClient 5.6 allows an attacker to cause the client to accept SCRAM-SHA-256 authentication without proper mutual authentication verification. Users are recommended to upgrade to version 5.6.1, which fixes this issue.
CVE-2026-40542
Missing critical step in authentication in Apache HttpClient 5.6 allow ...
GHSA-v468-qcjx-r72w
Apache HttpClient accepts SCRAM-SHA-256 authentication without proper mutual authentication verification
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-40542 Missing critical step in authentication in Apache HttpClient 5.6 allows an attacker to cause the client to accept SCRAM-SHA-256 authentication without proper mutual authentication verification. Users are recommended to upgrade to version 5.6.1, which fixes this issue. | CVSS3: 7.3 | 0% Низкий | 4 месяца назад | |
CVE-2026-40542 Missing critical step in authentication in Apache HttpClient 5.6 allows an attacker to cause the client to accept SCRAM-SHA-256 authentication without proper mutual authentication verification. Users are recommended to upgrade to version 5.6.1, which fixes this issue. | CVSS3: 7.3 | 0% Низкий | 4 месяца назад | |
CVE-2026-40542 Missing critical step in authentication in Apache HttpClient 5.6 allows an attacker to cause the client to accept SCRAM-SHA-256 authentication without proper mutual authentication verification. Users are recommended to upgrade to version 5.6.1, which fixes this issue. | CVSS3: 7.3 | 0% Низкий | 4 месяца назад | |
CVE-2026-40542 Missing critical step in authentication in Apache HttpClient 5.6 allow ... | CVSS3: 7.3 | 0% Низкий | 4 месяца назад | |
GHSA-v468-qcjx-r72w Apache HttpClient accepts SCRAM-SHA-256 authentication without proper mutual authentication verification | CVSS3: 7.3 | 0% Низкий | 4 месяца назад |
Уязвимостей на страницу