CVEs classified under CWE-208, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (50)
CVE-2026-77987 — CVSS 9.8 (critical): A server-side request forgery (SSRF) vulnerability was identified in the notebook viewer of GitHub Enterprise Server. The notebook viewer…
CVE-2023-41313 — CVSS 9.8 (critical): The authentication method in Apache Doris versions before 2.0.0 was vulnerable to timing attacks. Users are recommended to upgrade to…
CVE-2026-63132: OpenBao is an open source identity-based secrets management system. Prior to 2.6.0, OpenBao's handleLogicalRecovery path in http/logical.go…
CVE-2026-16315 — CVSS 8.7 (high): OMICRON StationGuard before version 4.10 contains a cryptographic timing side-channel vulnerability in the backend authentication mechanism…
CVE-2024-42512 — CVSS 8.6 (high): Vulnerability in the OPC UA .NET Standard Stack before 1.5.374.158 allows an unauthorized attacker to bypass application authentication…
CVE-2026-43606: Observable Timing Discrepancy in the AMD Vitis Libraries ECDSA secp256k1 component could allow attackers with local access to potentially…
CVE-2025-53940: Quiet is an alternative to team chat apps like Slack, Discord, and Element that does not require trusting a central server or running one's…
CVE-2026-16731: OMICRON StationScout before version 3.05 contains a cryptographic timing side-channel vulnerability in the backend authentication mechanism…
CVE-2026-18036: In Bouncy Castle for Java before 1.86, NTRU reduced secret values with the % operator in three helpers whose reference implementations are…
CVE-2026-69247: cryptography is a package designed to expose cryptographic primitives and recipes to Python developers. From 44.0.0 until 50.0.0…
CVE-2026-54736: Phalcon is a high-performance, full-stack PHP framework. Prior to 5.14.1, Phalcon\Encryption\Crypt::decrypt compares the attacker-supplied…
CVE-2026-47784 — CVSS 8.1 (high): In memcached before 1.6.42, password data for SASL password database authentication has a timing side channel because memcmp is used by…
CVE-2026-47783 — CVSS 8.1 (high): In memcached before 1.6.42, username data for SASL password database authentication has a timing side channel because a loop exits as soon…
CVE-2026-42602 — CVSS 8.1 (high): azureauthextension is the Azure Authenticator Extension. From 0.124.0 to 0.150.0, a server-side authentication bypass in azureauthextension…
CVE-2026-72700 — CVSS 7.5 (high): The getgrav/grav-plugin-login Composer plugin before 3.9.1 (used by Grav) compares password reset and account activation tokens using a…
CVE-2026-75589 — CVSS 7.5 (high): Net::OAuth versions before 0.33 for Perl check HMAC-SHA1, HMAC-SHA256 and PLAINTEXT signatures with a non-constant-time comparison in…
CVE-2025-49506 — CVSS 7.5 (high): APR-util versions 1.6.3 (and earlier) function apr_password_validate() was not constant-time with regards to hashes or passwords…
CVE-2026-13183 — CVSS 7.5 (high): In Progress® Telerik® UI for AJAX prior to v2026.2.708, RadAsyncUpload upload metadata processing may leak cryptographic validity through…
CVE-2026-6656 — CVSS 7.5 (high): Crypt::Password versions through 0.28 for Perl are susceptible to timing attacks. The check_password method uses the built-in eq operator…
CVE-2026-47373 — CVSS 7.5 (high): Crypt::SaltedHash versions through 0.09 for Perl is susceptible to timing attacks. These versions use Perl's built-in eq comparison…
CVE-2026-40972 — CVSS 7.5 (high): An attacker on the same network as the remote application may be able to utilize a timing attack to discover information about the remote…
CVE-2026-5086 — CVSS 7.5 (high): Crypt::SecretBuffer versions before 0.019 for Perl is suseceptible to timing attacks. For example, if Crypt::SecretBuffer was used to store…
CVE-2025-70949 — CVSS 7.5 (high): An observable timing discrepancy in @perfood/couch-auth v0.26.0 allows attackers to access sensitive information via a timing side-channel.
CVE-2021-42016 — CVSS 7.5 (high): A vulnerability has been identified in RUGGEDCOM i800, RUGGEDCOM i801, RUGGEDCOM i802, RUGGEDCOM i803, RUGGEDCOM M2100, RUGGEDCOM M2100F…
CVE-2026-70658 — CVSS 7.4 (high): Pay is a payments engine for Ruby on Rails 6.0 and higher. Prior to 11.6.2, Pay::Webhooks::PaddleBillingController#valid_signature? in…
CVE-2026-53525 — CVSS 7.4 (high): WeeChat (Wee Enhanced Environment for Chat) is a free chat client. In versions 0.3.1 through 4.9.0, the WeeChat relay authentication uses…
CVE-2025-48630 — CVSS 7.4 (high): In drawLayersInternal of SkiaRenderEngine.cpp, there is a possible way to access the GPU cache due to side channel information disclosure…
CVE-2025-68621 — CVSS 7.4 (high): Trilium Notes is an open-source, cross-platform hierarchical note taking application with focus on building large personal knowledge bases…
CVE-2026-77582: Tinyauth is an authentication and authorization server. Prior to 5.1.0, Tinyauth exposes a remotely observable timing difference between…
CVE-2026-8794: PaperCut NG/MF contains an observable timing discrepancy in its authentication component. An unauthenticated remote attacker can exploit…
CVE-2026-44368: PyQuorum is a cryptographic library for secret sharing and key management. Prior to 0.2.1, the mul_mod function implements multiplication…
CVE-2025-48995: SignXML is an implementation of the W3C XML Signature standard in Python. When verifying signatures with X509 certificate validation turned…
CVE-2025-59432: SCRAM (Salted Challenge Response Authentication Mechanism) is part of the family of Simple Authentication and Security Layer (SASL, RFC…
CVE-2026-6291 — CVSS 6.5 (medium): Bleichenbacher padding oracle in PKCS#7 KTRI decryption. When decrypting PKCS#7 EnvelopedData using RSA PKCS#1 v1.5 key transport, wolfSSL…
CVE-2024-22340 — CVSS 6.5 (medium): IBM Common Cryptographic Architecture 7.0.0 through 7.5.51 could allow a remote attacker to obtain sensitive information during the…
CVE-2024-23953 — CVSS 6.5 (medium): Use of Arrays.equals() in LlapSignerImpl in Apache Hive to compare message signatures allows attacker to forge a valid signature for an…
CVE-2024-42368 — CVSS 6.5 (medium): OpenTelemetry, also known as OTel, is a vendor-neutral open source Observability framework for instrumenting, generating, collecting, and…
CVE-2026-88010: Traefik is an open source HTTP reverse proxy and load balancer. From 3.6.11 until 3.7.13, checkPassword in pkg/middlewares/auth/basic_auth.g…
CVE-2026-84308 — CVSS 6.3 (medium): phpseclib is a PHP secure communications library. Prior to 3.0.57 and 4.0.1, pure-PHP X25519 scalar multiplication in…
CVE-2026-47380: NocoDB is software for building databases as spreadsheets. Prior to 2026.04.1, sign-in response timing differed between known and unknown…
CVE-2021-34337 — CVSS 6.3 (medium): An issue was discovered in Mailman Core before 3.3.5. An attacker with access to the REST API could use timing attacks to determine the…
CVE-2025-54764 — CVSS 6.2 (medium): Mbed TLS before 3.6.5 allows a local timing attack against certain RSA operations, and direct calls to mbedtls_mpi_mod_inv or…
CVE-2025-20067 — CVSS 6.0 (medium): Observable timing discrepancy in firmware for some Intel(R) CSME and Intel(R) SPS may allow a privileged user to potentially enable…
CVE-2026-18040: In Bouncy Castle for Java before 1.86, HQC leaked secret-derived data through two side channels: its GF(2^8) arithmetic used lookup tables…
CVE-2026-85725 — CVSS 5.9 (medium): LightRAG provides simple and fast retrieval-augmented generation. Prior to 1.5.5, verify_password in lightrag/api/passwords.py compares…
CVE-2026-87737 — CVSS 5.9 (medium): An issue was discovered in the mirage-crypto-ec package before 2.4.0 for OCaml. There is a timing side channel for NIST elliptic-curve…
CVE-2026-59276 — CVSS 5.9 (medium): Several components in Spring Security compare security-sensitive values using standard string equality (String.equals()) rather than a…