{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3abahcelievlerbihayat_app2.1.7/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:bahcelievler:bihayat_app:2.1.7:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":9.4,"id":"CVE-2026-6223"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["BiHayat App (2.1.7 through 07092026)"],"_cs_severities":["critical"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["Bahçelievler Muncipality"],"content_html":"\u003cp\u003eThe BiHayat App, developed by the Bahçelievler Municipality, contains a vulnerability (CVE-2026-6223) categorized as an improper restriction of excessive authentication attempts. This flaw allows remote, unauthenticated attackers to bypass authentication controls, effectively neutralizing login security measures. The vulnerability impacts application versions 2.1.7 through 07092026. As of the disclosure date, the vendor has not responded to vulnerability reports, leaving affected systems at high risk of unauthorized access. Defenders should monitor web logs for anomalous login patterns or spikes in authentication requests originating from single source IPs, which may indicate exploitation of this bypass mechanism.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows an unauthenticated attacker to gain unauthorized access to the application, potentially exposing user data or allowing administrative actions. Given the critical CVSS 9.4 severity, the risk of data exfiltration and account takeover is high for organizations relying on this application for citizen services or internal municipality management.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003eIdentify and inventory all instances of BiHayat App 2.1.7 or later currently in production environments. Given the lack of a vendor patch, restrict access to the application via network-level controls or a Web Application Firewall (WAF) until the vulnerability is addressed. Implement rate limiting at the WAF level to block excessive authentication attempts, as this serves as a temporary compensating control against the underlying authentication bypass.\u003c/p\u003e\n","date_modified":"2026-09-07T13:35:57Z","date_published":"2026-09-07T13:35:57Z","id":"https://feed.craftedsignal.io/briefs/2026-09-bihayat-auth-bypass/","summary":"The BiHayat App contains a flaw in authentication rate limiting that permits attackers to bypass login protections and gain unauthorized system access.","title":"Authentication Bypass Vulnerability in BiHayat App","url":"https://feed.craftedsignal.io/briefs/2026-09-bihayat-auth-bypass/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:bahcelievler:bihayat_app:2.1.7:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}