CVE-2026-75774 | karakeep-app karakeep up to 0.32.0 OAuth Sign-In apps/web/server/auth.ts improper authentication (Issue 2920)
A vulnerability identified as problematic has been detected in karakeep-app karakeep up to 0.32.0. The impacted element is an unknown function of the file apps/web/server/auth.ts of the component OAuth Sign-In. This manipulation causes improper authentication.
The identification of this vulnerability is CVE-2026-75774. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More