CVE-2026-38447

Source
https://cve.org/CVERecord?id=CVE-2026-38447
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-38447.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-38447
Published
2026-08-03T00:00:00Z
Modified
2026-09-02T03:30:48.905593698Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

osTicket 1.18.3 generates API keys using a predictable construction based on MD5 hashing. The use of MD5, combined with predictable inputs such as the current timestamp and client IP address, significantly reduces entropy. An attacker can approximate the key generation time and brute-force the key space within a feasible time window.

Database specific
{
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/38xxx/CVE-2026-38447.json",
    "cna_assigner": "mitre"
}
References

Affected packages

Git / github.com/osticket/osticket

Affected ranges

Type
GIT
Repo
https://github.com/osticket/osticket
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Database specific
Show details
{
    "source": "REFERENCES"
}

Affected versions

v1.*
v1.10
v1.10-rc.3
v1.10.1
v1.11
v1.11.0-rc1
v1.12
v1.12.1
v1.12.2
v1.14
v1.14-rc2
v1.14.-rc1
v1.14.1
v1.14.2
v1.14.3
v1.14.4
v1.15.1
v1.15.2
v1.15.3
v1.15.3.1
v1.16
v1.16.1
v1.16.2
v1.16.3
v1.17
v1.17-rc1
v1.17-rc2
v1.17-rc3
v1.17-rc4
v1.17.1
v1.17.2
v1.17.3
v1.17.4
v1.17.5
v1.17.6
v1.17.7
v1.8-dpr
v1.8.0
v1.8.0-rc1
v1.8.0-rc2
v1.8.0.1
v1.8.0.2
v1.8.0.3
v1.8.1.2
v1.8.2-dpr
v1.9-rc
v1.9.0
v1.9.1
v1.9.11
v1.9.12
v1.9.2
v1.9.3
v1.9.4
v1.9.4-rc5
v1.9.5
v1.9.5.1
v1.9.6
v1.9.7
v1.9.8
v1.9.8.1
v1.9.9

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-38447.json"