Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://kb.cert.org/vuls/id/595768 |
|
Fri, 05 Jun 2026 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Securly securly Chrome Extension
|
|
| Vendors & Products |
Securly securly Chrome Extension
|
Thu, 04 Jun 2026 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 CWE-284 |
Thu, 04 Jun 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Securly
Securly securly |
|
| Weaknesses | CWE-326 | |
| CPEs | cpe:2.3:a:securly:securly:3.0.7:*:*:*:*:chrome:*:* | |
| Vendors & Products |
Securly
Securly securly |
Thu, 04 Jun 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Wed, 03 Jun 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 CWE-284 |
Wed, 03 Jun 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Version 3.0.7 of the Securly Chrome Extension exposes multiple publicly accessible endpoints that allow unauthenticated access to sensitive data. The exposed information consists of SHA-1 hashes that are inadequately obfuscated using a simple Caesar cipher, which can be easily reversed to recover the original hash values and access the protected data. | |
| Title | CVE-2026-8878 | |
| References |
|
Status: PUBLISHED
Assigner: certcc
Published:
Updated: 2026-06-04T14:18:55.977Z
Reserved: 2026-05-18T20:27:44.651Z
Link: CVE-2026-8878
Updated: 2026-06-04T14:18:52.823Z
Status : Analyzed
Published: 2026-06-03T19:16:39.387
Modified: 2026-06-04T18:42:06.257
Link: CVE-2026-8878
No data.
OpenCVE Enrichment
Updated: 2026-06-05T10:11:26Z