CVE-2016-1219: Cybozu Garoon

Critical severity, CVSS 9.8. EPSS: 3.3% chance of exploitation in the next 30 days.

Cybozu Garoon before 4.2.2 allows remote attackers to bypass login authentication via vectors related to API use.

Affected products

  • Cybozu Garoon: up to and including 4.2.1

Published 2017-04-20. Last modified 2026-06-17.