CVE-2026-55666 | RocketChat Rocket.Chat up to 8.5.0 Email Address loginHandler.ts email improper authentication (GHSA-wx3c-76rf-wpwf)
A vulnerability, which was classified as critical, was found in RocketChat Rocket.Chat up to 8.5.0. This affects an unknown part of the file apps/meteor/app/apple/server/loginHandler.ts of the component Email Address Handler. Executing a manipulation of the argument email can lead to improper authentication.
This vulnerability is handled as CVE-2026-55666. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.VulDB Recent EntriesRead More