System running
Last check: 2026-09-29 02:26:23 | Auto-updates every hour
756 PoCs
CybersecPlayground | The ultimate platform for cybersecurity learning & Bug Bounty Resources

CVE-CVE-2026-73313

Severity
MEDIUM
CVSS Score
6.8
Description

XenForo before 2.3.13 contains a multi-factor authentication bypass vulnerability in the passkey TFA provider that allows an authenticated attacker to complete login as another user by submitting their own registered passkey credential during the WebAuthn assertion step. The passkey verification path performs a global credential lookup without validating that the matched credential belongs to the user whose login is pending, enabling an attacker who knows a target account's password to sign the ...

PoCs for CVE-CVE-2026-73313

CVE-2026-73313
General Python 0
BomboBombone 2026-09-08
Master Cybersecurity | Join CybersecPlayground for Cybersecurity Learning & Bug Bounty Resources