CVE-2026-53692: Redeight CMS

Medium severity, CVSS 5.9. EPSS: 0.1% chance of exploitation in the next 30 days.

Redeight CMS version 1.0 uses the MD5 algorithm without a salt to store user passwords. Because MD5 is a cryptographically broken algorithm and lacks salting, attackers who obtain the password hashes can trivially reverse them using rainbow tables, leading to the exposure of plaintext credentials.

Affected products

Published 2026-06-30. Last modified 2026-06-30.