CWE-321

High likelihood

Use of Hard-coded Cryptographic Key

Parent: CWE-798 - Use of Hard-coded Credentials

The product uses a hard-coded, unchangeable cryptographic key.

276 vulnerabilities with CWE-321
CVE-2026-42518 HIGH
Information Disclosure Vulnerability in e-Sushrut HMIS
CVE-2026-7306 MEDIUM
Xuxueli xxl-job OpenAPI Endpoint OpenApiController.java hard-coded key
CVSS 5.6
CVE-2026-32644 CRITICAL
Milesight Cameras Use of Hard-coded Cryptographic Key
CVSS 9.8
CVE-2026-7018 MEDIUM
Datavane Datavines JWT Token TokenManager.java hard-coded key
CVSS 5.6
CVE-2026-6611 LOW
liangliangyy DjangoBlog File Upload Endpoint settings.py hard-coded key
CVSS 3.1
CVE-2026-32958 MEDIUM
silex technology SD-330AC <=Ver.1.42 - Auth Bypass
CVSS 6.5
CVE-2026-6580 HIGH
liangliangyy DjangoBlog Amap API Call views.py hard-coded key
CVSS 7.3
CVE-2026-32324 HIGH
Anviz CX7 Firmware Use of Hard-coded Cryptographic Key
CVSS 7.7
CVE-2026-5426 HIGH
KnowledgeDeliver deployments before February 24, 2026 use a static ASP.NET/IIS machineKey value
CVSS 7.5
CVE-2026-39810 MEDIUM
Fortinet FortiClientEMS < 7.4.5 - Information Disclosure
CVSS 6.0
CVE-2026-33266 HIGH
Apache OpenMeetings: Hardcoded Remember-Me Cookie Encryption Key and Salt
CVSS 7.5
CVE-2026-5622 LOW
hcengineering Huly Platform JWT Token token.ts hard-coded key
CVSS 3.7
CVE-2026-5549 MEDIUM
Tenda AC10 RSA 2048-bit Private Key privkeySrv.pem hard-coded key
CVSS 5.3
CVE-2026-5527 MEDIUM
Tenda 4G03 Pro ECDSA P-256 Private Key server.key hard-coded key
CVSS 5.3
CVE-2026-5471 LOW
Investory Toy Planet Trouble App app.investory.toyfactory google-services-desktop.json hard-coded key
CVSS 3.3
CVE-2026-5462 LOW
Wahoo Fitness SYSTM App com.WahooFitness.SYSTM BuildConfig.java hard-coded key
CVSS 3.3
CVE-2026-5458 LOW
Noelse Individuals & Pro App com.afone.noelse BuildConfig.java hard-coded key
CVSS 3.3
CVE-2026-5457 LOW
PropertyGuru AgentNet Singapore App com.allproperty.android.agentnet BuildConfig.java hard-coded key
CVSS 3.3
CVE-2026-5456 LOW
Align Technology My Invisalign App com.aligntech.myinvisalign.emea BuildConfig.java hard-coded key
CVSS 3.3
CVE-2026-5455 LOW
Dialogue App ca.diagram.dialogue config.json hard-coded key
CVSS 3.3
CVE-2026-5454 LOW
GRID Organiser App co.gridapp.organiser app.json hard-coded key
CVSS 3.3
CVE-2026-5453 LOW
Rico só vantagem pra investir App br.com.rico.mobile SegmentSettingsModule.java hard-coded key
CVSS 3.3
CVE-2026-5452 LOW
UCC CampusConnect App campusconnect.ucc BuildConfig.java hard-coded key
CVSS 3.3
CVE-2026-5420 LOW
Shinrays Games Goods Triple App cats.goods.sort.sorting.games jRwTX.java hard-coded key
CVSS 2.5
CVE-2026-5310 LOW
Enter Software Iperius Backup IperiusAccounts.ini hard-coded key
CVSS 2.5
Details
Vulnerabilities 276
Exploit Likelihood High