CVE-2026-72584 | fastschema up to 0.15.1 OTP Verification pkg/auth/local.go verifyOTPSession toctou

SecurityVulns

A vulnerability has been found in fastschema up to 0.15.1 and classified as critical. This affects the function verifyOTPSession of the file pkg/auth/local.go of the component OTP Verification. Performing a manipulation results in time-of-check time-of-use.

This vulnerability is identified as CVE-2026-72584. The attack can be initiated remotely. There is not any exploit available.VulDB Recent EntriesRead More