By weakness (CWE)

CWE-645: related vulnerabilities

CVEs classified under CWE-645. Understanding the weakness class helps prioritize systemic fixes over one-off patches.

1 published vulnerability

  • CVE-2026-53982MEDIUM 6.5

    Cap-go Console versions before 12.28.2 contain a flaw that allows attackers with valid account credentials to trigger a denial-of-service condition affecting device authentication. When an attacker initiates account deletion while a device identifier is active in a session, the platform incorrectly locks that device to a disabled-account page for approximately 30 days. This prevents legitimate users from logging in or creating new accounts on that device or browser, even if they own the account or are attempting to register fresh.