CVE-2026-22104
hashtopolis server
Improper access control in Hashtopolis server web-interface chunk activity component for versions prior to 0.14.8 allows any created account to read all cracked hashes of a Hashtopolis server instance.
- CVSS
- 7.1
- EPSS
- 0.32% 24.9% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.17