CVE-2026-4404
ADVISORY - githubSummary
Use of hard coded credentials in GoHarbor Harbor version 2.15.0 and below, allows attackers to use the default password and gain access to the web UI.
EPSS Score: 0.00055 (0.173)
Common Weakness Enumeration (CWE)
NIST
CVSS SCORE
9.4criticalGitHub
CVSS SCORE
9.4criticalGoLang
CREATED
UPDATED
ADVISORY IDGO-2026-4845
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)-