VYPR
Critical severity9.8NVD Advisory· Published Sep 27, 2021· Updated Jun 17, 2026

CVE-2021-40329

CVE-2021-40329

Description

The Authentication API in Ping Identity PingFederate before 10.3 mishandles certain aspects of external password management.

Affected products

3
  • Pingidentity/Pingfederatellm-fuzzy3 versions
    <10.3+ 2 more
    • (no CPE)range: <10.3
    • cpe:2.3:a:pingidentity:pingfederate:*:*:*:*:*:*:*:*range: <10.3
    • (no CPE)range: 10.2.3

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.