ajenti.plugin.core
Core
Activity
- Latest release
- 3d ago
- Total releases
- 108
- Cadence
- ~35 days
- Last 12 months
- 6
Details
- First release
- Feb 08, 2015
| Version | Released | |
|---|---|---|
0.116
minor
|
0.116
minor
Dependencies (2)
|
|
0.115
minor
|
0.115
minor
Dependencies (2)
|
|
0.114
minor
|
0.114
minor
Dependencies (2)
|
|
0.113
minor
|
0.113
minor
Dependencies (2)
|
|
0.112
minor
|
0.112
minor
Dependencies (2)
|
|
0.111
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.111
minor
Dependencies (2)
|
|
0.110
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.110
minor
Dependencies (2)
|
|
0.109
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.109
minor
|
|
0.108
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.108
minor
|
|
0.107
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.107
minor
|
|
0.106
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.106
minor
|
|
0.105
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.105
minor
|
|
0.104
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.104
minor
|
|
0.103
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.103
minor
|
|
0.102
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.102
minor
|
|
0.101
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.101
minor
|
|
0.100
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.100
minor
|
|
0.99
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.99
minor
|
|
0.98
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.98
minor
|
|
0.97
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.97
minor
|
|
0.96
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.96
minor
|
|
0.95
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.95
minor
|
|
0.94
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.94
minor
|
|
0.93
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.93
minor
|
|
0.92
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.92
minor
|
|
0.91
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.91
minor
|
|
0.90
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.90
minor
|
|
0.89
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.89
minor
|
|
0.88
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.88
minor
|
|
0.87
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.87
minor
|
|
0.86
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.86
minor
|
|
0.85
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.85
minor
|
|
0.84
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.84
minor
|
|
0.83
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.83
minor
|
|
0.82
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.82
minor
|
|
0.81
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.81
minor
|
|
0.80
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.80
minor
|
|
0.79
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.79
minor
|
|
0.78
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.78
minor
|
|
0.76
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.76
minor
|
|
0.75
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.75
minor
|
|
0.74
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.74
minor
|
|
0.73
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.73
minor
|
|
0.72
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.72
minor
|
|
0.71
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.71
minor
|
|
0.69
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.69
minor
|
|
0.68
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.68
minor
|
|
0.67
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.67
minor
|
|
0.66
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.66
minor
|
|
0.65
minor
2 CVEs
CVE-2026-40178
PYSEC-2026-2340
GHSA-8647-755q-fw9p
Jul 13, 2026
ajenti.plugin.core has race conditions in 2FA
Critical
Network
High
None
None
ImpactIf the 2FA was activated, it was possible during a short moment after the authentication of an user to bypass its authentication. PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 13, 2026 · Source: OSV.dev
CVE-2026-40177
PYSEC-2026-266
GHSA-3mcx-6wxm-qr8v
Jun 29, 2026
ajenti.plugin.core has password bypass when 2FA is activated
Critical
Network
Low
None
None
ImpactIf the 2FA was activated, it was possible to bypass the password authentication PatchesThis is fixed in the version 0.112. Users should upgrade to this version as soon as possible. Affected versions
0.1
0.10
0.100
0.101
0.102
0.103
0.104
0.105
0.106
0.107
0.108
0.109
+ 91 more Show less
0.11
0.110
0.111
0.12
0.13
0.14
0.15
0.16
0.17
0.18
0.19
0.2
0.20
0.21
0.22
0.23
0.24
0.25
0.27
0.28
0.3
0.30
0.31
0.32
0.33
0.34
0.35
0.36
0.37
0.38
0.39
0.4
0.40
0.41
0.42
0.43
0.45
0.46
0.47
0.48
0.49
0.5
0.50
0.51
0.52
0.54
0.56
0.57
0.59
0.6
0.60
0.61
0.62
0.63
0.64
0.65
0.66
0.67
0.68
0.69
0.7
0.71
0.72
0.73
0.74
0.75
0.76
0.78
0.79
0.8
0.80
0.81
0.82
0.83
0.84
0.85
0.86
0.87
0.88
0.89
0.9
0.90
0.91
0.92
0.93
0.94
0.95
0.96
0.97
0.98
0.99
Fixed in
0.112
References Updated Jul 01, 2026 · Source: OSV.dev |
0.65
minor
|