Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-90562— LangBot before 4.10.11 Authentication Bypass via Weak Recovery Key

Quick assessment

Affected
langbot-app LangBot
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

在 4.10.11 版本之前的 LangBot 使用仅具有 24 位熵的密钥生成密码恢复密钥,并且对未认证的“重置密码”端点没有应用任何速率限制。知道管理员邮箱的远程攻击者可以通过向重置管理员密码的端点发送并发请求来遍历整个密钥空间,从而获得管理员账户的访问权限。

CVSS 8.1 · High

Possible ATT&CK Techniques 1 AI

T1568 · Dynamic Resolution
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-90562

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
LangBot before 4.10.11 Authentication Bypass via Weak Recovery Key
Source: CVE Program / CVE List V5
Vulnerability Description
LangBot before 4.10.11 generates password recovery keys with only 24 bits of entropy and applies no rate limiting to the unauthenticated reset-password endpoint. Remote attackers knowing the administrator email can exhaust the keyspace through concurrent requests to reset the admin password and gain account access.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
信息熵不充分
Source: CVE Program / CVE List V5

Affected Products

Vendor Product Affected Versions CPE Subscribe
langbot-app LangBot 4.0.8.1 ~ 4.10.11 -

II. Public POCs for CVE-2026-90562

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-90562

登录查看更多情报信息。

Patches & Fixes for CVE-2026-90562 (1)

Vendor Advisories for CVE-2026-90562 (1)

Proof of Concept for CVE-2026-90562 (1)

Other References for CVE-2026-90562 (2)

IV. Related Vulnerabilities

V. Comments for CVE-2026-90562

No comments yet


Leave a comment