Ajenti 2FA Password Bypass Vulnerability in ajenti.plugin.core
Vulnerability
A vulnerability allowing password authentication bypass has been identified in ajenti.plugin.core versions prior to 0.112, when two-factor authentication (2FA) is enabled. This issue has been addressed in version 0.112.
Impact
Exploitation of this vulnerability allowed users to bypass password authentication when 2FA was activated.
Remediation
Users are advised to upgrade to ajenti.plugin.core version 0.112 or later.
Added: Apr 10, 2026, 8:25 PM
Updated: Apr 10, 2026, 8:25 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
5.0exploitability
7.4remediation
0.0relevance
5.7threat
0.0urgency
2.9incentive
4.2Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
