CVE-2026-49000
Published
27 May 2026
Modified
24 July 2026
CVSS Score v3.1
7.0
Click a component to see what it means
Raw vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:L
EPSS Score
0.0012
2th percentile
Summary
CVE-2026-49000 is a high-severity an unspecified weakness vulnerability in Com (inferred from references). Its CVSS base score is 7.0 (High).
Operationally, ranked at the 2th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.
EU & UK References
- 🇪🇺 ENISA EUVD: EUVD-2026-32049
Vulnerability Data
An insecure password scheme refers to vulnerabilities arising from improper selection of encryption algorithms, inadequate key management, or flawed code implementation, which may lead to data leakage or tampering, such as hard-coded keys or the use of weak encryption algorithms.
- CWE(s)
Related Threats
CVEs Like This One
CVE-2023-23919Shared CWE-310
CVE-2024-38408Shared CWE-310
CVE-2014-8684Shared CWE-310
CVE-2024-20690Shared CWE-310
CVE-2026-5682Shared CWE-310
CVE-2025-5136Shared CWE-310
CVE-2025-2922Shared CWE-310
CVE-2026-2618Shared CWE-310
CVE-2025-8205Shared CWE-310
CVE-2026-4584Shared CWE-310
Affected Assets
Com
—
inferred from references and description; NVD did not file a CPE for this CVE
Mitigating Controls
No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.