An issue in Semantic machines v5.4.8 allows attackers to bypass authentication via sending a crafted HTTP request to various API endpoints.
Metrics
Affected Vendors & Products
References
History
Wed, 14 Jan 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Semantic
Semantic machines |
|
| Vendors & Products |
Semantic
Semantic machines |
Tue, 13 Jan 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-287 | |
| Metrics |
cvssV3_1
|
Tue, 13 Jan 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue in Semantic machines v5.4.8 allows attackers to bypass authentication via sending a crafted HTTP request to various API endpoints. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-01-13T00:00:00.000Z
Updated: 2026-01-13T16:35:46.768Z
Reserved: 2025-12-08T00:00:00.000Z
Link: CVE-2025-66698
Updated: 2026-01-13T16:31:54.863Z
Status : Received
Published: 2026-01-13T16:15:55.907
Modified: 2026-01-13T17:15:58.710
Link: CVE-2025-66698
No data.