CVE-2026-4404
9.4
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:L
Exploitability: 3.9 / Impact: 5.5
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)
Description
Use of hard coded credentials in GoHarbor Harbor version 2.15.0 and below, allows attackers to use the default password and gain access to the web UI.
Affected (1)
Products: Linuxfoundation: Harbor
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 2.15.0 |
Related CWEs
References (5)
Source: cret@cert.org
Product
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.