CVE-2026-53692: Redeight CMS
Medium severity, CVSS 5.9. EPSS: 0.1% chance of exploitation in the next 30 days.
Redeight CMS version 1.0 uses the MD5 algorithm without a salt to store user passwords. Because MD5 is a cryptographically broken algorithm and lacks salting, attackers who obtain the password hashes can trivially reverse them using rainbow tables, leading to the exposure of plaintext credentials.
Affected products
- Redeight Redeight CMS: version 1.0 only
Published 2026-06-30. Last modified 2026-06-30.