Unrated severityNVD Advisory· Published Aug 3, 2026· Updated Aug 3, 2026
Authentication bypass on WaptServer
CVE-2026-33591
Description
A vulnerability in Wapt Server before version 2.6.1.17813 allows a remote unauthenticated attacker to bypass security restriction using a specially crafted packet and retrieve a valid session token for the targeted account.
Affected products
1- Range: <2.6.1.17813
Patches
Vulnerability mechanics
References
3- www.wapt.fr/en/doc/wapt-security-bulletin.htmlmitrevendor-advisory
- www.wapt.fr/en/doc/wapt-changelog.htmlmitrerelease-notes
- www.wapt.fr/en/doc/wapt-changelog.htmlmitrerelease-notes
News mentions
0No linked articles in our index yet.