CVE-2023-50872: Accredible Credential.net
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
The API in Accredible Credential.net December 6th, 2023 allows an Insecure Direct Object Reference attack that discloses partial information about certificates and their respective holder. NOTE: the excellium-services.com web page about this issue mentions "Vendor says that it's not a security issue."
Affected products
- Accredible Credential.net Accredible Credential.net
Published 2024-04-16. Last modified 2026-06-17.