CWE-1428: Reliance on HTTP instead of HTTPS
The product provides or relies on use of HTTP communications when HTTPS is available.
2 tracked CVEs are classified under this weakness.
Highest-risk vulnerabilities
- CVE-2026-40677 — The use of insecure HTTP transport within AMD optional tools could allow an attacker to conduct a man-in-the-middle atta
- CVE-2026-10763 — PROMOD V is using insecure HTTP communication instead of HTTPS. The vulnerability is due to the lack of HTTPS support fr
Recently published
- CVE-2026-10763 — PROMOD V is using insecure HTTP communication instead of HTTPS. The vulnerability is due to the lack of HTTPS support fr
- CVE-2026-40677 — The use of insecure HTTP transport within AMD optional tools could allow an attacker to conduct a man-in-the-middle atta