No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 15 Sep 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Payara
Payara payara Server |
|
| Vendors & Products |
Payara
Payara payara Server |
Tue, 15 Sep 2026 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 15 Sep 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | By default, Payara Server does not limit the number of failed login attempts, which can leave it vulnerable to brute force login attacks. To mitigate this, Payara Server includes built-in automatic attack protection. For configuration details, see https://docs.azul.com/payara/technical-documentation/payara-server-documentation/security-guide/administering-system-security.html . | |
| Title | Payara Server is vulnerable to brute-force login attacks due to the absence of a limit on failed login attempts | |
| Weaknesses | CWE-307 | |
| References |
|
|
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Payara
Published:
Updated: 2026-09-15T14:58:50.917Z
Reserved: 2026-09-15T13:03:29.440Z
Link: CVE-2026-92082
Updated: 2026-09-15T14:58:46.359Z
Status : Received
Published: 2026-09-15T15:17:33.317
Modified: 2026-09-15T15:17:33.317
Link: CVE-2026-92082
No data.
OpenCVE Enrichment
Updated: 2026-09-15T15:45:19Z