CVE-2026-49000

An insecure password scheme refers to vulnerabilities arising from improper selection of encryption algorithms, inadequate key management, or flawed code implementation, which may lead to data leakage or tampering, such as hard-coded keys or the use of weak encryption algorithms.

Scoring

Severity
HIGH
CVSS base score
7
CVSS vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:L
EPSS probability
0.12%
CWE
CWE-310
Published
2026-05-27
Last modified
2026-05-28

Affected products

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs