SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-13348

MEDIUM · CVSS 6.9 EPSS 0.31%

Source: NVD + CISA KEV + EPSS · Published 2026-09-01 · Last synced 2026-09-17

CyberRota Analysis

AI-Generated

A vulnerability exists that allows attackers to exploit improper restrictions on authentication attempts, potentially enabling unauthorized access to user accounts when redirect handling is disabled. This issue poses a medium risk, particularly for applications that rely on user authentication mechanisms. Organizations with systems that handle user logins should prioritize addressing this vulnerability to mitigate the risk of account compromise.

CVE
CVE-2026-13348
Severity
MEDIUM
CVSS
6.9
EPSS
0.31%

Original NVD Description

CWE-307: Improper Restriction of Excessive Authentication Attempts vulnerability exists that could allow an attacker to gain unauthorized access to a user account by performing an arbitrary number of authentication attempts when redirect handling is disabled.