CVE-2026-5140

Improper neutralization of CRLF sequences ('CRLF injection') vulnerability in TUBITAK BILGEM Software Technologies Research Institute Pardus Update allows Authentication Bypass. This issue affects Pardus Update: from 0.6.3 before 0.6.4.
Configurations

No configuration.

History

04 May 2026, 14:16

Type Values Removed Values Added
Summary (en) Improper neutralization of CRLF sequences ('CRLF injection') vulnerability in TUBITAK BILGEM Software Technologies Research Institute Pardus allows Authentication Bypass. This issue affects Pardus: from <=0.6.4 before 0.8.0. (en) Improper neutralization of CRLF sequences ('CRLF injection') vulnerability in TUBITAK BILGEM Software Technologies Research Institute Pardus Update allows Authentication Bypass. This issue affects Pardus Update: from 0.6.3 before 0.6.4.

29 Apr 2026, 21:13

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-29 14:16

Updated : 2026-05-04 14:16


NVD link : CVE-2026-5140

Mitre link : CVE-2026-5140

CVE.ORG link : CVE-2026-5140


JSON object : View

Products Affected

No product.

CWE
CWE-93

Improper Neutralization of CRLF Sequences ('CRLF Injection')