A vulnerability was found in SimStudioAI sim up to 0.6.92. Affected by this vulnerability is an unknown functionality in the library apps/sim/lib/core/security/deployment.ts of the component Password Protection Handler. Performing a manipulation results in use of weak hash. The attack is possible to be carried out remotely. The attack's complexity is rated as high. The exploitation appears to be difficult. The exploit has been made public and could be used. The pull request to fix this issue awaits acceptance.
Metrics
Affected Vendors & Products
References
History
Mon, 29 Jun 2026 05:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Simstudioai
Simstudioai sim |
|
| Vendors & Products |
Simstudioai
Simstudioai sim |
Sun, 28 Jun 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in SimStudioAI sim up to 0.6.92. Affected by this vulnerability is an unknown functionality in the library apps/sim/lib/core/security/deployment.ts of the component Password Protection Handler. Performing a manipulation results in use of weak hash. The attack is possible to be carried out remotely. The attack's complexity is rated as high. The exploitation appears to be difficult. The exploit has been made public and could be used. The pull request to fix this issue awaits acceptance. | |
| Title | SimStudioAI sim Password Protection deployment.ts weak hash | |
| First Time appeared |
Sim
Sim sim |
|
| Weaknesses | CWE-327 CWE-328 |
|
| CPEs | cpe:2.3:a:sim:sim:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Sim
Sim sim |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-28T22:15:11.256Z
Reserved: 2026-06-28T06:27:00.657Z
Link: CVE-2026-13510
No data.
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-29T05:45:04Z