VYPR

Two-factor authentication plugin

by Apache

CVEs (1)

  • CVE-2026-59799HigAug 21, 2026
    risk 0.57cvss 8.8epss 0.01

    Improper Privilege Management vulnerability in Apache CloudStack's Two-factor authentication plugin allowing bypass of the two-factor authentication disable flow. This issue affects Apache CloudStack: from 4.18.0.0 through 4.20.3.0 and from 4.21.0.0 through 4.22.1.0. Users are…