CVE-2026-4404

ADVISORY - github

Summary

Use of hard coded credentials in GoHarbor Harbor version 2.15.0 and below, allows attackers to use the default password and gain access to the web UI.

EPSS Score: 0.0004 (0.120)

Common Weakness Enumeration (CWE)

ADVISORY - nist

Use of Default Password

Use of Hard-coded Credentials

ADVISORY - github

Use of Default Password

Use of Hard-coded Credentials


Sign in to Docker Scout

See which of your images are affected by this CVE and how to fix them by signing into Docker Scout.

Sign in