TopVuln

High-risk vulnerability digests

CVE-2026-42513

  • HIGH

Details

CVSS v4
8.8
NVD published
2026-04-29 09:16:24
EPSS
0.4% probability · 59.0th percentile — 2026-05-12
Affected versions
All affected e-Sushrut versions, specific versions not disclosed
Summary
This vulnerability stems from improper authentication logic that relies on client-side response parameters to confirm authentication status. A remote attacker can exploit this by intercepting and modifying server responses to bypass authentication checks. Successful exploitation allows attackers to gain unauthorized access to any user account on the targeted system.
Remediation
Update authentication logic to validate all authentication status exclusively on the server side, instead of trusting client-controlled parameters. Install the latest official security update for e-Sushrut. Conduct code reviews to identify and remediate other client-side trust vulnerabilities.
Exploit info
No public exploit found yet.

View on NVD

TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.

Subscribe — free email digest or paid plan

Information is aggregated from multiple authoritative sources for convenience; verify with NVD and vendors before operational decisions.