Metrics
Affected Vendors & Products
Thu, 05 Mar 2026 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Spip saisies
|
|
| CPEs | cpe:2.3:a:spip:saisies:*:*:*:*:*:spip:*:* | |
| Vendors & Products |
Spip saisies
|
Mon, 02 Mar 2026 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:spip:spip:*:*:*:*:*:*:*:* |
Fri, 27 Feb 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 27 Feb 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Fri, 27 Feb 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Spip
Spip spip |
|
| Vendors & Products |
Spip
Spip spip |
Thu, 26 Feb 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | SPIP versions prior to 4.4.10 contain an authentication bypass vulnerability caused by PHP type juggling that allows unauthenticated attackers to access protected information. Attackers can exploit loose type comparisons in authentication logic to bypass login verification and retrieve sensitive internal data. | |
| Title | SPIP < 4.4.10 Authentication Bypass via PHP Type Juggling | |
| Weaknesses | CWE-288 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-02-26T20:18:14.748Z
Updated: 2026-03-05T01:30:17.621Z
Reserved: 2026-01-06T16:47:17.185Z
Link: CVE-2026-22205
Updated: 2026-02-27T20:06:33.193Z
Status : Analyzed
Published: 2026-02-26T21:28:52.217
Modified: 2026-03-02T16:08:10.217
Link: CVE-2026-22205
No data.