SEPTEMBER 19, 2026
Live Feed
Back to database
Case File

CVE-2026-66677

HIGH · CVSS 7.6 EPSS 0.37%

Source: NVD + CISA KEV + EPSS · Published 2026-08-20 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

Leyka versions up to 3.32.3 are vulnerable to broken authentication issues, allowing unauthorized access to subscriber accounts. This flaw can lead to account takeover and potential data breaches, making it critical for organizations using Leyka to prioritize remediation. Users and administrators of affected Leyka products should implement immediate security measures to mitigate this risk.

CVE
CVE-2026-66677
Severity
HIGH
CVSS
7.6
EPSS
0.37%

Original NVD Description

Subscriber Broken Authentication in Leyka <= 3.32.3 versions.