Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2026-71959

около 1 месяца назад

Bitwarden Server before 2026.7.2 does not verify that the caller is a member of the organization identified in a POST /collect request body, allowing any authenticated user to write forged, arbitrarily backdated entries into any organization's audit log.

CVSS3: 5.8
EPSS: Низкий
debian логотип

CVE-2026-71959

около 1 месяца назад

Bitwarden Server before 2026.7.2 does not verify that the caller is a ...

CVSS3: 5.8
EPSS: Низкий
github логотип

GHSA-m2wp-hqw2-j56m

около 1 месяца назад

Bitwarden Server before 2026.7.2 does not verify that the caller is a member of the organization identified in a POST /collect request body, allowing any authenticated user to write forged, arbitrarily backdated entries into any organization's audit log.

CVSS3: 5.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-71959

Bitwarden Server before 2026.7.2 does not verify that the caller is a member of the organization identified in a POST /collect request body, allowing any authenticated user to write forged, arbitrarily backdated entries into any organization's audit log.

CVSS3: 5.8
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2026-71959

Bitwarden Server before 2026.7.2 does not verify that the caller is a ...

CVSS3: 5.8
0%
Низкий
около 1 месяца назад
github логотип
GHSA-m2wp-hqw2-j56m

Bitwarden Server before 2026.7.2 does not verify that the caller is a member of the organization identified in a POST /collect request body, allowing any authenticated user to write forged, arbitrarily backdated entries into any organization's audit log.

CVSS3: 5.8
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу