A static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to a
Authentication Bypass by Primary Weakness, Weak Password Recovery Mechanism for Forgotten Password vulnerability in Bire
Beehive Forum 1.5.2 contains a host header injection vulnerability in the forgot password functionality that allows atta
Known is a social publishing platform. Prior to 1.6.3, a Critical Broken Authentication vulnerability exists in Known 1.
EverShop is a TypeScript-first eCommerce platform. Versions prior to 2.1.1 have a vulnerability in the "Forgot Password"
Vikunja is an open-source self-hosted task management platform. Versions prior to 2.1.0 have a business logic vulnerabil
OPEXUS eComplaint and eCASE before version 10.1.0.0 include the secret verification code in the HTTP response when reque
The Branda plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and in
The Invoice Generator plugin for WordPress is vulnerable to Account Takeover via Password Reset in all versions up to, a
The SignUp & SignIn plugin for WordPress is vulnerable to Authentication Bypass via Weak Password Reset Validation leadi
An issue in DokuWiki 2025-05-14b "Librarian" 56.2 allows a remote attacker to create an account via the register functio
Esri Portal for ArcGIS versions 12.1 and earlier on Windows, Linux and Kubernetes have a missing authentication for crit
The TrueBooker – Appointment Booking and Scheduler System plugin for WordPress is vulnerable to account takeover via imp
An authentication bypass in ManageEngine DDI Central's password-reset workflow allows account takeover.
Unauthenticated Privilege Escalation in miniorange otp verification <= 5.5.1 versions.
Unauthenticated Broken Access Control in Nokri <= 1.6.6 versions.
The Wishlist Member plugin for WordPress is vulnerable to Account Takeover via Insufficient Verification of Data Authent
Dancer2::Plugin::Auth::Extensible versions through 0.713 for Perl allow password reset link poisoning via the request Ho
The Automation Web Platform – Notifications and OTP for WooCommerce, Advanced Country Code plugin for WordPress is vulne
The TranslatePress – Translate Multilingual sites with AI Translation plugin for WordPress is vulnerable to Sensitive In
Improper Restriction of Excessive Authentication Attempts, Weak Password Recovery Mechanism for Forgotten Password vulne
Incorrect Access Control via activation token reuse on the password-reset endpoint allowing unauthorized password resets
Chamilo LMS is a learning management system. Prior to 1.11.38 and 2.0.0-RC.3, the default password reset mechanism gener
FreeScout is a free help desk and shared inbox built with PHP's Laravel framework. Prior to version 1.8.224, the public
Statmatic is a Laravel and Git powered content management system (CMS). Prior to versions 6.3.3 and 5.73.10, an attacker
The Membership Plugin – Kadence Memberships plugin for WordPress (formerly Restrict Content) is vulnerable to password r
macrozheng mall version 1.0.3 and prior contains an authentication vulnerability in the mall-portal password reset workf
Payload is a free and open source headless content management system. Prior to version 3.79.1 in @payloadcms/graphql and
An issue was discovered in Gambio 4.9.2.0 (patched in 2024-02 v1.0.0 for GX4 v4.0.0.0 to v4.9.2.0). The password reset f
Cap-go before 12.128.2 contains an authentication logic flaw that lets an attacker register and control an account bound
A flaw was found in the reset-credentials flow of the keycloak-services component, which is the core engine for identity
OpenAEV is an open source platform allowing organizations to plan, schedule and conduct cyber adversary simulation campa
LimeSurvey constructs account password-reset links from the client-supplied HTTP Host header without validating it. The
Pimcore is an Open Source Data & Experience Management Platform. Prior to 2025.4.6 and 2026.1.6, an unauthenticated atta
The Essential Addons for Elementor – Popular Elementor Templates & Widgets plugin for WordPress is vulnerable to Authent
phpMyFAQ before 4.1.3 contains an unauthenticated password reset vulnerability in the user password update API endpoint
A security flaw has been discovered in Intelbras VIP 3260 Z IA 2.840.00IB005.0.T. Affected by this vulnerability is an u
Internet Routing Registry daemon version 4 is an IRR database server, processing IRR objects in the RPSL format. From ve
phpBB before 3.3.16 is vulnerable to Host Header Injection that can lead to password rest link poisoning. When force_ser
AzuraCast is a self-hosted, all-in-one web radio management suite. Prior to version 0.23.6, the ApplyXForwarded middlewa
ApostropheCMS is an open-source Node.js content management system. Versions up to and including 4.29.0 have a password r
A Weak Password Recovery Mechanism for Forgotten Password exists in Esri Portal for ArcGIS versions 12.1 and earlier on
The SureCart plugin for WordPress is vulnerable to privilege escalation via account takeover in versions up to, and incl
Budibase versions before 3.40.0 contain an authorization/authentication bypass in the PUT /api/global/users/tenant/owner
Vulnerability in the Oracle iSupplier Portal product of Oracle E-Business Suite (component: Home Page). Supported versi
Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management).
Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management).
Vulnerability in the Oracle WebCenter Content product of Oracle Fusion Middleware (component: Web Content Management).
Vulnerability in the Oracle Agile Product Lifecycle Management for Process product of Oracle Supply Chain (component: Pr
The Simple History – Track, Log, and Audit WordPress Changes plugin for WordPress is vulnerable to authenticated (Subscr
Frequently Asked Questions
What is CWE-640?
CWE-640 (CWE-640) is a weakness category in the Common Weakness Enumeration (CWE) system maintained by MITRE. It describes a class of software or hardware vulnerability that can lead to security issues.
How many CVEs are classified as CWE-640?
There are 87 CVE records associated with CWE-640 in our database. Of these, 32 are critical severity, 27 are high severity, and 18 are medium severity.
How can I protect against CWE-640 vulnerabilities?
Protection strategies depend on the specific weakness type. General measures include input validation, secure coding practices, regular security testing, and keeping software up to date. CyberStrike can help by automatically scanning your infrastructure for vulnerabilities related to CWE-640 using AI-powered security agents.
Detect CWE-640 Vulnerabilities
CyberStrike's AI agents automatically detect cwe-640 vulnerabilities across your infrastructure.
Get Started