Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 16 Apr 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 16 Apr 2026 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Unintended DLL Search Path in Yubico Authentication Libraries | |
| First Time appeared |
Yubico
Yubico libfido2 Yubico python-fido2 Yubico yubikey-manager |
|
| Vendors & Products |
Yubico
Yubico libfido2 Yubico python-fido2 Yubico yubikey-manager |
Wed, 15 Apr 2026 23:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Yubico libfido2 before 1.17.0, python-fido2 before 2.2.0, and yubikey-manager before 5.9.1 have an unintended DLL search path. | |
| Weaknesses | CWE-426 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-04-16T13:18:13.069Z
Reserved: 2026-04-15T23:11:52.721Z
Link: CVE-2026-40947
Updated: 2026-04-16T13:18:09.606Z
Status : Awaiting Analysis
Published: 2026-04-16T00:16:29.223
Modified: 2026-04-17T15:38:09.243
Link: CVE-2026-40947
No data.
OpenCVE Enrichment
Updated: 2026-04-16T09:15:30Z