The Mira cloud authentication endpoints do not enforce per-account rate limiting, per-IP throttling, or account lockout after repeated failed login attempts. An attacker can use brute-force methods to obtain gain access to user accounts.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-11 22:18
Updated : 2026-09-01 21:16
NVD link : CVE-2026-66340
Mitre link : CVE-2026-66340
CVE.ORG link : CVE-2026-66340
JSON object : View
Products Affected
No product.
CWE
CWE-307
Improper Restriction of Excessive Authentication Attempts
