ID:12974 - Exploit for Improper authentication in Gaia - CVE-2026-16232
Published: August 25, 2026
Gaia
Link to public exploit:
Vulnerability description
The vulnerability allows a remote attacker to bypass authentication.
The vulnerability exists due to improper authentication in SmartConsole login using application token in Management when handling login requests. A remote attacker can send a specially crafted login request to bypass authentication.
The vulnerability is being actively exploited in the wild.