SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-75325

CRITICAL · CVSS 9.8 EPSS 0.35% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-26 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

DWSurvey v6.14.0 is susceptible to an authentication bypass vulnerability through the '/api/dwsurvey/none/' and '/api/dwsurvey/up/**' endpoints, allowing unauthorized access to sensitive functionalities. Organizations utilizing this version should prioritize remediation to prevent potential exploitation that could compromise data integrity and confidentiality.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-75325
Severity
CRITICAL
CVSS
9.8
EPSS
0.35%

Original NVD Description

DWSurvey v6.14.0 is is vulnerable to authentication bypass via the '/api/dwsurvey/none/' and '/api/dwsurvey/up/**' parameters.