Yubico webauthn-server-core (aka java-webauthn-server) 2.8.0 before 2.8.2 incorrectly checks a function's return value in the second factor flow, leading to impersonation.
References
Configurations
No configuration.
History
14 May 2026, 04:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
14 May 2026, 02:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-14 02:17
Updated : 2026-05-14 18:31
NVD link : CVE-2026-46419
Mitre link : CVE-2026-46419
CVE.ORG link : CVE-2026-46419
JSON object : View
Products Affected
No product.
CWE
CWE-253
Incorrect Check of Function Return Value
