Browse all 3 CVE security advisories affecting tinyauthapp. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-77561 | Tinyauth: Unauthenticated login attempts can trigger global login lockdown denial of service — tinyauth CWE-307 | 5.3 | Medium | 2026-09-21 |
| CVE-2026-77582 | Tinyauth: User enumeration attack by timing oracle — tinyauth CWE-208 | 6.9 | Medium | 2026-09-21 |
| CVE-2026-77560 | Tinyauth: forward-auth per-app ACL is matched case-sensitively against the (case-insensitive) hostname, letting an authenticated user reach apps they are not on the allowlist for — tinyauth CWE-178 | 8.1 | High | 2026-09-21 |
This page lists every published CVE security advisory associated with tinyauthapp. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.