ajenti.plugin.core defines all necessary core elements to allow Ajenti to run properly. Prior to 0.112, if the 2FA was activated, it was possible to bypass the password authentication This vulnerability is fixed in 0.112.
References
| Link | Resource |
|---|---|
| https://github.com/ajenti/ajenti/security/advisories/GHSA-3mcx-6wxm-qr8v | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2026-04-10 20:16
Updated : 2026-06-17 10:44
NVD link : CVE-2026-40177
Mitre link : CVE-2026-40177
CVE.ORG link : CVE-2026-40177
JSON object : View
Products Affected
ajenti
- ajenti_plugin_core
CWE
