Medium severity5.3NVD Advisory· Published Aug 11, 2026· Updated Sep 1, 2026
CVE-2026-66340
CVE-2026-66340
Description
The Mira cloud authentication endpoints do not enforce per-account rate limiting, per-IP throttling, or account lockout after repeated failed login attempts. An attacker can use brute-force methods to obtain gain access to user accounts.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
1Patches
Vulnerability mechanics
References
2News mentions
1- Mira Hormone Monitor, Mira Android AppCISA Alerts