VU#889462: Casdoor authentication server is vulnerable to authorization bypass
2026-09-03T20:52:03Z•2fef5daa74b52a67fac2f47e32a811125026cf2e66224c61a6def34a283bdd48
CVE-2026-15630CVE-2026-19505CVE-2026-19506CVE-2026-19874CVE-2026-19912CVE-2026-19913CVE-2026-6726CVE-2026-6727CVE-2026-75501CVE-2026-80047CasdoorHugging-Face-TransformersKalturaMetal-Gear-Online-3RDK-BTPMUPnParbitrary-file-readauthentication-bypassauthorization-bypassdirectory-traversalheap-buffer-overflowinsecure-deserializationmissing-authenticationmulti-tenant-isolationremote-code-executionroutertiming-side-channel
What happened
CERT/CC vulnerability notes describe multiple vulnerabilities across IAM, machine-learning, media, gaming, networking, broadband, TPM, and ecommerce software. The issues include cross-tenant authorization bypass, unauthorized remote-code file caching, insecure deserialization leading to arbitrary file read and potential RCE, heap buffer overflow with client-side RCE, unauthenticated WAN UPnP administration, WebUI authentication bypass and memory corruption, TPM information leakage and timing side channels, and directory traversal. Several permit unauthenticated or remote exploitation and could
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- certcc_vulnotes
- Record identifier
- 2fef5daa74b52a67fac2f47e32a811125026cf2e66224c61a6def34a283bdd48
- Enrichment time
- 2026-09-03T20:52:03Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.