CVE-2026-77337 | CakePHP Authentication up to 2.11.1/3.3.6/4.2.0 CookieAuthenticator memory allocation

SecurityVulns

A vulnerability, which was classified as critical, has been found in CakePHP Authentication up to 2.11.1/3.3.6/4.2.0. This impacts an unknown function of the component CookieAuthenticator. This manipulation causes uncontrolled memory allocation.

This vulnerability appears as CVE-2026-77337. The attack may be initiated remotely. There is no available exploit.

It is advisable to upgrade the affected component.VulDB Recent EntriesRead More