CVE-2026-57867
MicroRealEstate
MicroRealEstate allows adversaries to bypass authentication due to a lack of token state management. This would permit adversaries targeting MicroRealEstate deployments to brute-force One-Time Passwords (OTP) to log in as any user. This issue affects MicroRealEstate: through 1.0.0-alpha3.
- CVSS
- 8.8
- EPSS
- 0.34% 26.6% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.07