CVE-2025-40805 - Apache API Authentication Bypass - Expert Insights

CVE-2025-40805 - Apache API Authentication Bypass - Expert Insights

CVE ID : CVE-2025-40805 Published : Jan. 13, 2026, 10:15 a.m. | 27 minutes ago Description : Affected devices do not properly enforce user authentication on specific API endpoints. This could facilitate an unauthenticated remote attacker to circumvent authentication and impersonate a legitimate user. Successful exploitation requires that the attacker has learned the identity of a legitimate user. Severity: 10.0 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
CRITICAL
Published
Jan. 13, 2026

Source: Telegram CVE Monitor