CVE-2026-33591

A vulnerability in Wapt Server before version 2.6.1.17813 allows a  remote unauthenticated attacker to bypass security restriction using a specially crafted packet and retrieve a valid session token for the targeted account.
CVSS

No CVSS.

Configurations

No configuration.

History

No history.

Information

Published : 2026-08-03 10:16

Updated : 2026-09-01 21:07


NVD link : CVE-2026-33591

Mitre link : CVE-2026-33591

CVE.ORG link : CVE-2026-33591


JSON object : View

Products Affected

No product.

CWE
CWE-288

Authentication Bypass Using an Alternate Path or Channel