Логотип exploitDog
bind:CVE-2026-4208
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-4208

Количество 2

Количество 2

nvd логотип

CVE-2026-4208

24 дня назад

The extension fails to properly reset the generated MFA code after successful authentication. This leads to a possible MFA bypass for future login attempts by providing an empty string as MFA code to the extensions MFA provider.

EPSS: Низкий
github логотип

GHSA-29r8-gvx4-r9w3

24 дня назад

Authentication Bypass in extension "E-Mail MFA Provider" (mfa_email)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-4208

The extension fails to properly reset the generated MFA code after successful authentication. This leads to a possible MFA bypass for future login attempts by providing an empty string as MFA code to the extensions MFA provider.

0%
Низкий
24 дня назад
github логотип
GHSA-29r8-gvx4-r9w3

Authentication Bypass in extension "E-Mail MFA Provider" (mfa_email)

0%
Низкий
24 дня назад

Уязвимостей на страницу