VYPR

OpenAM Community Edition

by OpenAM Consortium

CVEs (1)

  • CVE-2026-46560higJun 25, 2026
    risk 0.45cvss —epss —

    ## Summary **Description** An Improper Verification of Cryptographic Signature (CWE-347) issue in OpenAM's RADIUS authentication module allows an unauthenticated network attacker to spoof an Access-Accept response and obtain an OpenAM session for any RADIUS username, without…