Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2025-56219 — Detailed advisory for CVE-2025-56219, a rate-limiting flaw in Ascertia SigningHub's Add User API, enabling automated user creation and denial of service. Includes CVSS score, affected versions, and mitigation guidance. | Kitploit
Tools/GitHubGitHub/saykino/cve-2025-56219
Vulnerability AnalysisWeb SecurityLearning & EducationCurated ResourcesAPI Security
GitHubsaykino/cve-2025-56219

CVE-2025-56219

Detailed advisory for CVE-2025-56219, a rate-limiting flaw in Ascertia SigningHub's Add User API, enabling automated user creation and denial of service. Includes CVSS score, affected versions, and mitigation guidance.

View Repository
10 months agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2025-56219 Lack of Rate Limiting – Add User API

Description

An attacker can automate the creation of a large number of Users in a short period of time to cause a DoS.


CVSS Score: 7.1 (High)


Attack Type

  • Remote (Authenticated)

Affected Versions

  • Versions before <= 8.6.8

Vendor of Product

  • Ascertia

Affected Product Code Base

  • SigningHub

Affected Component

  • Add User API.

Mitigations

  • Implement rate-limit for the Add User API.

Vulnerability Details

  • The application allows users to add new user accounts without any rate limiting or throttling in place. This flaw enables an attacker to automate the creation of a large number of user accounts in a short period of time, potentially leading to resource exhaustion, database bloating, or denial of service (DoS).

Fixed versions

  • Versions after > 8.6.8

Discovered By:

  • Yazan Abu-Nadi
Download Tool