Threats Tagged 'cve-2026-57178'
View all threats tagged with 'cve-2026-57178'. Filter and sort to focus on specific types of threats.
Stop chasing alerts. Route them.
Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.
Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)
API access activates after upgrading in Console -> Billing.
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.
Filter Threats
Narrow down the results by type, severity, or affected countries
Threats Tagged 'cve-2026-57178'
Click on any threat for detailed analysis and mitigation recommendations
A vulnerability in python-social-auth's social-core component prior to version 5.0.0 allows improper authentication via the vk-app backend. The backend accepted VK application callback data without verifying the callback signature if the auth_key parameter was missing. This flaw could let attackers impersonate arbitrary VK user IDs by supplying unsigned callback data. The issue is fixed in version 5.0.0 by enforcing the presence and validity of auth_key before trusting callback data. Join the discussion | CVE Database V5 | 09/24/2026, 17:25:47 UTC Added: 09/24/2026, 17:34:08 UTC |
Showing 1 to 1 of 1 result