Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
Upgrade to Burp Suite DAST 2026.8 or later.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://portswigger.net/burp/releases/dast-2026-8 |
|
Thu, 24 Sep 2026 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In PortSwigger Burp Suite DAST (formerly Burp Suite Enterprise Edition) before 2026.8, an authentication bypass can occur via an alternate path or channel. | |
| Weaknesses | CWE-288 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-09-24T14:55:31.110Z
Reserved: 2026-09-12T02:49:29.536Z
Link: CVE-2026-90481
No data.
Status : Received
Published: 2026-09-24T15:17:51.760
Modified: 2026-09-24T15:17:51.760
Link: CVE-2026-90481
No data.
OpenCVE Enrichment
No data.
-
CWE-288
Authentication Bypass Using an Alternate Path or Channel