CWE-321
High likelihoodUse of Hard-coded Cryptographic Key
The product uses a hard-coded, unchangeable cryptographic key.
311 vulnerabilities with CWE-321
CVE-2025-30206
CRITICAL
Dpanel < 1.6.1 - Unauthenticated Authentication Bypass via Hardcoded JWT Secret
CVSS 9.8
CVE-2025-31362
LOW
BizRobo! - Use of Hard-coded Cryptographic Key
CVSS 3.7
CVE-2025-3177
MEDIUM
FastCMS 0.1.5 - Use of Hard-coded Cryptographic Key in JWT Handler
CVSS 5.0
CVE-2025-30406
CRITICAL
KEV
Gladinet CentreStack < 16.4.10315.56368 Use of Hard-coded Key Leads to Unauthenticated RCE
CVSS 9.0
CVE-2025-30095
CRITICAL
VyOS 1.3-1.5 - Use of Hard-coded Cryptographic Key in Dropbear SSH Host Keys
CVSS 9.0
CVE-2025-30234
HIGH
SmartOS - Use of Hard-coded Cryptographic Key in SSH Host Keys
CVSS 8.3
CVE-2025-27674
CRITICAL
Vasion Print <22.0.843 - Hardcoded IdP Key
CVSS 9.8
CVE-2025-26340
HIGH
Q-Free MaxTime <= 2.11.0 - Auth Bypass
CVSS 8.8
CVE-2025-1099
HIGH
Tapo C500 Wi-Fi camera - Info Disclosure
CVE-2024-54855
MEDIUM
Vanilla OS 2 Core image <1.1.0 - Info Disclosure
CVSS 6.4
CVE-2024-56429
HIGH
itech iLabClient <3.7.1 - Info Disclosure
CVSS 7.7
CVE-2024-58134
HIGH
Mojolicious <0.999922 - Info Disclosure
CVSS 8.1
CVE-2024-54027
HIGH
FortiSandbox <4.4.6 - Info Disclosure
CVSS 8.2
CVE-2024-13773
HIGH
Civi - Job Board & Freelance Marketplace <2.1.4 - Info Disclosure
CVSS 7.3
CVE-2024-33504
MEDIUM
FortiManager <7.6.1 - Memory Corruption
CVSS 4.1
CVE-2024-13842
MEDIUM
Ivanti Connect/Ivanti Policy <22.7R2.3/<22.7R1.3 - Info Disclosure
CVSS 6.0
CVE-2024-28989
MEDIUM
SolarWinds Web Help Desk - Info Disclosure
CVSS 5.5
CVE-2024-52881
HIGH
AudioCodes OVOC <8.4.582 - Info Disclosure
CVSS 7.5
CVE-2024-47256
MEDIUM
2N Access Commander <3.3 - Info Disclosure
CVSS 6.0
CVE-2024-12078
MEDIUM
ECOVACS Robot Firmware - Shared BLE Key Robot Control
CVSS 6.3
CVE-2024-50564
LOW
Fortinet FortiClientWindows <7.4.0 - Info Disclosure
CVSS 3.3
CVE-2024-5722
HIGH
Logsign Unified SecOps Platform 6.4.6-6.4.8 - Unauthenticated Remote Code Execution via Hard-coded Cryptographic Key
CVSS 8.8
CVE-2024-45837
MEDIUM
AIPHONE IX SYSTEM - Info Disclosure
CVSS 5.4
CVE-2024-52614
MEDIUM
Kura Sushi Official App <3.8.5 - Info Disclosure
CVSS 4.0
CVE-2024-11308
MEDIUM
DVC 6.0-6.3 - Use of Hard-coded Cryptographic Key
CVSS 6.2
Details
Vulnerabilities
311
Exploit Likelihood
High