CVE-2025-56224: Ascertia Signinghub
High severity, CVSS 8.1. EPSS: 0.4% chance of exploitation in the next 30 days.
A lack of rate limiting in the One-Time Password (OTP) verification endpoint of SigningHub v8.6.8 allows attackers to bypass verification via a bruteforce attack.
Affected products
- Ascertia Signinghub: up to and including 8.6.8
Published 2025-10-20. Last modified 2026-07-05.