CWE-326

CWE-326 · 3 records · 2 with a public proof-of-concept

Records the NVD classes under CWE-326, highest CVSS first.

  1. HIGH 7.5CVE-2026-82356

    Imprivata EAM <=26.2.6 lacks the ability to rotate its RSA key pair after deployment when generating an X.509 certificate. Using an RSA key pair indefinitely for certificate generation is against best practices.

    AI risk analysis on Exploit-DB.ai →

  2. LOW 3.7CVE-2026-105156public PoC

    A weakness has been identified in YzmCMS up to 7.6. Impacted is the function Password of the file /common/function/system.func.php of the component MD5 Handler. Executing a manipulation of the argument pass can lead to password hash with insufficient computati…

    AI risk analysis on Exploit-DB.ai →

  3. UNSCOREDCVE-2026-77405public PoC

    RabbitMQ amqp091-go is a Go AMQP 0.9.1 client. Prior to 1.13.0, tlsConfigFromURI in uri.go creates tls.Config values without setting MinVersion to tls.VersionTLS12. Builds using a Go runtime whose default permits TLS 1.0 or TLS 1.1 can therefore negotiate an o…

    AI risk analysis on Exploit-DB.ai →