CVE-2025-29419CWE-300
CVE-2025-29419
High · published August 26, 2026
What it is
CTFd v3.7.6 was discovered to be vulnerable to a man-in-the-middle attack.
The record
Technical detail
- CVSS v3.1
- 7.1 · HIGH
- Vector
- CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:N
- CVSS v4.0
- Not supplied
- EPSS
- 0.00186 · 8.2th percentile
- Weakness
- CWE-300 · Channel Accessible by Non-Endpoint
- Published
- 2026-08-26T22:16Z
References (4)
EPSS history
Timeline