CVE-2026-27785
Specific firmware versions of Milesight AIOT camera firmware contain hard-coded credentials.
CVSS
8.8
High
EPSS
0.2%
p13
KEV
—
Exploit Today
4
0-100
Published: Apr 28, 2026 · Last modified: Jul 25, 2026 · CWE-798
0.2%EPSS · 30 days0.2%
2026-07-252026-08-21
Specific firmware versions of Milesight AIOT camera firmware contain hard-coded credentials.
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-780627.3 HIG—
———A vulnerability was identified in vas3k TaxHacker up to 0.8.2. The affected element is the function envSchema.parse of the file lib/config.ts of the component JWT Secret Handler. The manipulation of the argument BETTER_AUTH_SECRET leads to hard-coded credentials. The attack can be initiated remotely. The project was informed of the problem early through an issue report but has not responded yet.5hCVE-2026-761315.3 MED10.0%
——3Use of hard-coded credentials issue exists in VOCALOID6 , which may allow an attacker to impersonate a legitimate VOCALOID6 Editor and gain access to Yamaha's activation and content servers.2dCVE-2026-763925.4 MED6.5%
——2In Splunk AI Toolkit versions below 6.0.0, a user who does not hold the "admin" or "power" Splunk roles could obtain predictable or default credentials for connected container services. The use of hard-coded credentials is possible because Splunk AI Toolkit generates or stores credentials for connected container services using predictable or hard-coded default values. For more information see Connections tab in the AI Toolkit (https://help.splunk.com/en/splunk-cloud-platform/apply-machine-learning/use-ai-toolkit/5.7.2/ai-toolkit-commands-macros-and-visualizations/connections-tab-in-the-ai-toolkit) in the Splunk documentation.2dCVE-2026-719609.1 CRI33.9%
——10Cudy WR3000 2.0 running firmware before 2.5.24 contains a hard-coded JWT HMAC signing secret vulnerability in the Mosquitto MQTT broker's authentication plugin that allows unauthenticated attackers to forge valid JWT tokens by extracting the secret from the firmware image. Attackers can use the extracted secret to craft arbitrary JWT tokens and authenticate to the MQTT broker without legitimate credentials, gaining unauthorized access to the device's mesh networking interface.2dCVE-2021-437179.8 CRI14.0%
——4An issue exists in pson EH-TW5350 Epson iProjection.apk v3.2.6. If you identify a projector equipped with an iProjection function, you can access the projector using hard-coded authentication information and control the projector maliciously.2dCVE-2026-748938.8 HIG18.5%
——6openssl_encrypt versions before 1.4.0 contain hardcoded default JWT signing secrets in config.py that pass validation checks. Attackers with access to source code can forge valid JWT tokens for any client_id to gain authenticated access to keyserver and telemetry APIs.6d