Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2026-51954 — Vulnerability Research | Kitploit
Tools/GitHubGitHub/envincion1991-cmyk/cve-2026-51954
Vulnerability AnalysisExploitationWeb SecurityAuthenticationAPI Security
GitHubenvincion1991-cmyk/cve-2026-51954

CVE-2026-51954

Vulnerability Research

View Repository
41 month agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Product: Webasyst Framework

Affected Version: ≤ 4.0.3

Severity: High (CVSS 3.1: 8.0)

Description

Webasyst Framework through 4.0.3 contains an OAuth 2.0 implementation flaw that allows a remote, unauthenticated attacker to intercept authorization credentials issued during the OAuth flow, without requiring the victim to do anything beyond normal authorization approval. Due to improper validation, an attacker can obtain a permanent API access token and gain full, unrestricted API access to the victim's entire Webasyst account.

Credits

  • Saleh Alghamdi
  • Abdulrahman Aldossary
Download Tool