CVE-2024-50478

CRITICAL

Swoopnow 1-click Login - Authentication Bypass

Title source: rule

Description

Authentication Bypass by Primary Weakness vulnerability in swoopbrandon 1-Click Login: Passwordless Authentication swoop-password-free-authentication allows Authentication Bypass.This issue affects 1-Click Login: Passwordless Authentication: from n/a through 1.4.5.

Exploits (1)

nomisec WORKING POC
by RandomRobbieBF · poc
https://github.com/RandomRobbieBF/CVE-2024-50478

Scores

CVSS v3 9.8
EPSS 0.2864
EPSS Percentile 96.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-287 CWE-305
Status published
Products (2)
swoopbrandon/1-Click Login: Passwordless Authentication < 1.4.5
swoopnow/1-click_login\ _passwordless_authentication 1.4.5
Published Oct 28, 2024
Tracked Since Feb 18, 2026