Tag
high
advisory
CVE-2026-92749 - Insecure Session Signing Secret Generation in SafeLine
2 TTPsSafeLine versions up to 9.4.1 are vulnerable to unauthorized administrative access due to the derivation of session-signing secrets using a weak time-seeded PRNG.
SafeLine
web-application-firewall
cryptographic-vulnerability
privilege-escalation
2t
critical
threat
CVE-2026-81702 Key Substitution in openssl_encrypt
1 TTP 1 CVEThe openssl_encrypt library before 1.4.9 is vulnerable to key substitution attacks due to improper fingerprint validation when loading identities from local identity.json files.
exploited
openssl_encrypt +2
cryptographic-vulnerability
credential-theft
cve-2026-81689
vulnerability
cryptography
denial-of-service
cve-2026-81699
1t
1c
high
threat
CVE-2026-11348: HAVELSAN Liman MYS Cryptographic Signature Bypass Vulnerability
1 CVEA critical improper verification of cryptographic signature vulnerability, tracked as CVE-2026-11348, in HAVELSAN Inc.'s Liman MYS product allows an unauthenticated attacker to fake the source of data, leading to potential data integrity compromise.
exploited
Liman MYS: < release.Master.1107
vulnerability
cryptographic-vulnerability
liman-mys
1c