CWE-290

Authentication Bypass by Spoofing

Parent: CWE-1390 - Weak Authentication

This attack-focused weakness is caused by incorrectly implemented authentication schemes that are subject to spoofing attacks.

535 vulnerabilities with CWE-290
CVE-2025-24628 MEDIUM
BestWebSoft Google Captcha <1.78 - Auth Bypass
CVSS 5.3
CVE-2025-24458 HIGH
Jetbrains Youtrack < 2024.3.55417 - Authentication Bypass by Spoofing
CVSS 7.1
CVE-2025-0442 MEDIUM
Google Chrome <132.0.6834.83 - XSS
CVSS 6.5
CVE-2025-0440 MEDIUM
Google Chrome <132.0.6834.83 - XSS
CVSS 6.5
CVE-2024-1524 HIGH
WSO2 IS - Privilege Escalation
CVSS 7.7
CVE-2024-8273 HIGH
HYPR Server <10.1 - Auth Bypass
CVSS 8.8
CVE-2024-55210 CRITICAL
Totvs Framework (linha Protheus) - Authentication Bypass by Spoofing
CVSS 9.8
CVE-2024-58127 HIGH
Huawei Emui - Authentication Bypass by Spoofing
CVSS 8.4
CVE-2024-58126 HIGH
Huawei Emui - Authentication Bypass by Spoofing
CVSS 8.4
CVE-2024-58125 HIGH
Huawei Emui - Authentication Bypass by Spoofing
CVSS 8.4
CVE-2024-58124 HIGH
Huawei Emui - Authentication Bypass by Spoofing
CVSS 8.4
CVE-2024-54085 CRITICAL KEV
AMI's SPx - Auth Bypass
CVSS 9.8
CVE-2024-13685 MEDIUM
Wpase Admin And Site Enhancements - Authentication Bypass by Spoofing
CVSS 5.3
CVE-2024-36557 MEDIUM
Forever KidsWatch <V1.0 - RCE
CVSS 6.6
CVE-2024-55925 HIGH
Xerox Workplace Suite - Auth Bypass
CVSS 7.5
CVE-2024-13061 CRITICAL
Electronic Official Document Management System - Auth Bypass
CVSS 9.8
CVE-2024-12108 CRITICAL
Progress Whatsup Gold < 24.0.2 - Authentication Bypass by Spoofing
CVSS 9.6
CVE-2024-54450 CRITICAL
Kurmi Provisioning Suite 7.9.0.33 - Info Disclosure
CVSS 9.4
CVE-2024-55470 HIGH
Nuget Oqtane.framework - Authentication Bypass by Spoofing
CVSS 7.5
CVE-2024-55232 MEDIUM
Phpgurukul Online Notes Sharing Manag... - Authentication Bypass by Spoofing
CVSS 5.4
CVE-2024-54158 LOW
JetBrains YouTrack <2024.3.52635 - Open Redirect
CVSS 3.5
CVE-2024-50380 HIGH
Snap One OVRC - Info Disclosure
CVE-2024-53862 HIGH
Argo Workflows - Info Disclosure
CVSS 7.5
CVE-2024-36466 HIGH
Zabbix - Auth Bypass
CVSS 8.8
CVE-2024-11701 MEDIUM
Firefox < 133 - Info Disclosure
CVSS 4.3
Details
Vulnerabilities 535