CVE-2026-22104EPSS p36.9%

CVE-2026-22104CVE-2026-22104

Description

Improper access control in Hashtopolis server web-interface chunk activity component for versions prior to 0.14.8 allows any created account to read all cracked hashes of a Hashtopolis server instance.

Scoring

EPSS0.45% probability of exploitation · percentile 36.9% · 2026-10-05T12:00:23Z
Last modified2026-07-17
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.