« Back to list

Boruta

Boruta WEB: vulnerabilities and CVEs

Boruta WEB has 1 published vulnerabilities, 1 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.

CVEs1
Last 12 months1
Critical0
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2026-53661High (8.8)0.32%—Jun 11, 2026
Boruta is a standalone authorization server that aims to implement OAuth 2.0 and Openid Connect up to decentralized identity specifications. Prior to version 0.9.1, boruta session cookies and the identity “remember me”…

🎯 How it gets exploited (ATT&CK techniques)

  1. T1078 Valid Accounts1
  2. T1557 Adversary-in-the-Middle1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.

Other products by Boruta