Authentication Bypass Vulnerability in Ghidra by National Security Agency
CVE-2026-52754
8.7HIGH
What is CVE-2026-52754?
The Ghidra software, developed by the National Security Agency, is affected by an authentication bypass vulnerability in its PKIAuthenticationModule. This flaw allows any individual possessing a valid CA-signed certificate to impersonate other users by presenting their public certificate accompanied by a null signature. As a result, attackers can potentially escalate their privileges, modify crucial repository access controls, exfiltrate sensitive reverse engineering databases, and ultimately compromise the integrity of the server. Timely updates and proper security measures are essential to mitigate these risks.
Affected Version(s)
ghidra 0 < 12.1
ghidra 12.1
