Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'cwe-290'

View all threats tagged with 'cwe-290'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cwe-290

Threats Tagged 'cwe-290'

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-42662: CWE-290 Authentication Bypass by Spoofing in Liquid Web / StellarWP Event TicketsCVE-2026-42662
0

CVE-2026-42662 is an authentication bypass vulnerability affecting Liquid Web / StellarWP Event Tickets plugin versions up to 5.27.5. This vulnerability allows unauthenticated attackers to bypass authentication controls, potentially leading to limited integrity and availability impacts. The vulnerability is classified under CWE-290 (Authentication Bypass by Spoofing) and has a medium severity rating with a CVSS score of 6.5.

Join the discussion
CVE-2026-27089: CWE-290 Authentication Bypass by Spoofing in Magepeople inc. WpTravellyCVE-2026-27089
0

CVE-2026-27089 is an authentication bypass vulnerability affecting WpTravelly versions up to and including 2.1.7. This flaw allows an unauthenticated attacker to bypass authentication controls by spoofing, potentially leading to unauthorized actions that impact integrity. The vulnerability has a high severity rating with a CVSS score of 7.5. No official patch or remediation guidance is currently available from the vendor. There are no known exploits in the wild at this time.

Join the discussion
CVE-2026-49757: CWE-290 Authentication Bypass by Spoofing in team-alembic ash_authenticationCVE-2026-49757
0

Authentication Bypass by Spoofing vulnerability in team-alembic AshAuthentication allows account takeover of local users via OAuth2/OIDC sign-in. AshAuthentication's OAuth2 and OIDC family strategies matched the local user by email address (an upsert on the email field, or a user-defined sign-in filter) rather than by the OpenID Connect iss/sub claim combination. Per OpenID Connect Core §5.7, only iss/sub uniquely and stably identifies an end-user; other claims, including email, MUST NOT be used as unique identifiers. A provider login presenting a victim's email, including an unverified email, a reused email, or an account with email_verified: false, resolved to and signed in as the victim's existing local account. An unauthenticated attacker who can register an account on any accepted OAuth provider with the victim's email (or who benefits from provider-side email reuse or reclamation) obtains the victim's full local privileges. The fix resolves users by the (strategy, sub) identity stored in a user identity resource, and only links a new sub to an existing local account by email when the provider's email_verified claim is trusted (trust_email_verified?). This issue affects ash_authentication from 0.1.0 before 4.14.0 and from 5.0.0-rc.0 before 5.0.0-rc.10.

Join the discussion
CVE-2026-34025: CWE-290 Authentication bypass by spoofing in Wertheim GmbH Wertheim SafeController Software for VAULT ROOMS (Safe Deposit Locker System)CVE-2026-34025
0

The Wertheim SafeController Software, AssemblyVersion 6.15.8328.28014, contains an IP restriction bypass vulnerability in the login process. The application restricts user logins based on the IP address associated with a branch location, but the client IP address is derived from the HTTP X-Forwarded-For header when that header is present. An attacker with valid branch user credentials can manipulate the X-Forwarded-For header during login to spoof the expected branch IP address and obtain a valid authenticated session from an unauthorized network location.

Join the discussion
CVE-2026-5792: CWE-290 Authentication bypass by spoofing in Hedef Media Promotion Interactive Media Marketing Inc. Related Marketing Cloud (RMC)CVE-2026-5792
0

Authentication bypass by spoofing vulnerability in Hedef Media Promotion Interactive Media Marketing Inc. Related Marketing Cloud (RMC) allows Brute Force. This issue affects Related Marketing Cloud (RMC): through 12052026.

Join the discussion
CVE-2026-6090: CWE-290: Authentication Bypass by Spoofing in Lenovo Smart ConnectCVE-2026-6090
0

A potential authentication bypass was reported in Lenovo Smart Connect for Windows that could allow a local authenticated user to execute arbitrary code with elevated privileges.

Join the discussion
CVE-2026-48567: CWE-290: Authentication Bypass by Spoofing in Microsoft Azure HorizonDBCVE-2026-48567
0

Authentication bypass by spoofing in Azure HorizonDB allows an unauthorized attacker to elevate privileges over a network.

Join the discussion
CVE-2026-8644: CWE-290 Authentication Bypass by Spoofing in IBM WebSphere Application ServerCVE-2026-8644
0

IBM WebSphere Application Server versions 8.5 and 9.0 contain a critical authentication bypass vulnerability (CVE-2026-8644) that allows identity spoofing. This flaw can enable an attacker to bypass authentication controls without user interaction, potentially leading to high impact on integrity and availability. There is no official patch or remediation level currently confirmed by the vendor. No known exploits in the wild have been reported at this time.

Join the discussion
CVE-2026-42674: CWE-290 Authentication Bypass by Spoofing in AAM Plugin Advanced Access ManagerCVE-2026-42674
0

Authentication Bypass by Spoofing vulnerability in AAM Plugin Advanced Access Manager allows URL Encoding. This issue affects Advanced Access Manager: from n/a through 7.1.0.

Join the discussion
CVE-2026-47123: CWE-290: Authentication Bypass by Spoofing in freescout-help-desk freescoutCVE-2026-47123
0

FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to 1.8.220, the email processing pipeline in FreeScout's FetchEmails command has two code paths for identifying agent (user) replies based on In-Reply-To / References headers. The notification reply path (notify-{thread_id}-{user_id}-...) extracts thread_id and user_id directly from the Message-ID without HMAC verification. An external attacker who can spoof the From address of a helpdesk agent can inject messages that FreeScout processes as legitimate agent replies — which are then automatically forwarded to customers via the legitimate SMTP server. This vulnerability is fixed in 1.8.220.

Join the discussion

Showing 1 to 10 of 104 results

Filters:Tag: cwe-290
Page 1 of 11
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses