Loading vulnerability details…
CVSS v3.1
8.2
CVSS v4.0
6.0
EPSS
0.24%
Published
Jun 24, 2024
Modified
Jan 2, 2026
Public PoC / Exploit (1)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Bludit uses predictable methods in combination with the MD5 hashing algorithm to generate sensitive tokens such as the API token and the user token. This allows attackers to authenticate against the Bludit API.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:NWeaknesses (CWE)
Affected Products (1)
References (2)