This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.
535 vulnerabilities with CWE-290
CVE-2025-24628
MEDIUM
BestWebSoft Google Captcha <1.78 - Auth Bypass
CVSS 5.3
CVE-2025-24458
HIGH
Jetbrains Youtrack < 2024.3.55417 - Authentication Bypass by Spoofing
CVSS 7.1
CVE-2025-0442
MEDIUM
Google Chrome <132.0.6834.83 - XSS
CVSS 6.5
CVE-2025-0440
MEDIUM
Google Chrome <132.0.6834.83 - XSS
CVSS 6.5
CVE-2024-1524
HIGH
WSO2 IS - Privilege Escalation
CVSS 7.7
CVE-2024-8273
HIGH
HYPR Server <10.1 - Auth Bypass
CVSS 8.8
CVE-2024-55210
CRITICAL
Totvs Framework (linha Protheus) - Authentication Bypass by Spoofing
CVSS 9.8
CVE-2024-58127
HIGH
Huawei Emui - Authentication Bypass by Spoofing
CVSS 8.4
CVE-2024-58126
HIGH
Huawei Emui - Authentication Bypass by Spoofing
CVSS 8.4
CVE-2024-58125
HIGH
Huawei Emui - Authentication Bypass by Spoofing
CVSS 8.4
CVE-2024-58124
HIGH
Huawei Emui - Authentication Bypass by Spoofing
CVSS 8.4
CVE-2024-54085
CRITICAL
KEV
AMI's SPx - Auth Bypass
CVSS 9.8
CVE-2024-13685
MEDIUM
Wpase Admin And Site Enhancements - Authentication Bypass by Spoofing
CVSS 5.3
CVE-2024-36557
MEDIUM
Forever KidsWatch <V1.0 - RCE
CVSS 6.6
CVE-2024-55925
HIGH
Xerox Workplace Suite - Auth Bypass
CVSS 7.5
CVE-2024-13061
CRITICAL
Electronic Official Document Management System - Auth Bypass
CVSS 9.8
CVE-2024-12108
CRITICAL
Progress Whatsup Gold < 24.0.2 - Authentication Bypass by Spoofing
CVSS 9.6
CVE-2024-54450
CRITICAL
Kurmi Provisioning Suite 7.9.0.33 - Info Disclosure
CVSS 9.4
CVE-2024-55470
HIGH
Nuget Oqtane.framework - Authentication Bypass by Spoofing
CVSS 7.5
CVE-2024-55232
MEDIUM
Phpgurukul Online Notes Sharing Manag... - Authentication Bypass by Spoofing
CVSS 5.4
CVE-2024-54158
LOW
JetBrains YouTrack <2024.3.52635 - Open Redirect
CVSS 3.5
CVE-2024-50380
HIGH
Snap One OVRC - Info Disclosure
CVE-2024-53862
HIGH
Argo Workflows - Info Disclosure
CVSS 7.5
CVE-2024-36466
HIGH
Zabbix - Auth Bypass
CVSS 8.8
CVE-2024-11701
MEDIUM
Firefox < 133 - Info Disclosure
CVSS 4.3
Details
Vulnerabilities
535