Vulnary
← back to the feed
Critical· 10official fix available

CVE-2026-40965

Cloud Foundry UAA versions v76.12.0 through v78.12.0 expose EC private keys via the /token_keys endpoint, allowing attackers to forge JWT tokens. The flaw only affects deployments using elliptic‑curve keys for JWT signing; RSA configurations are safe. Upgrading to a fixed version removes the exposure.

publishedJun 1, 2026
last modifiedJul 22, 2026
sourcesNVD
severity · cvss
10
critical · how bad it is
exploitation · epss
<1%
27th percentile · chance of exploitation in 30 days
(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →
auto-deletes from the system
counting…on Aug 24, 2026

An official fix is available, so this entry is kept for 30 days and then removed automatically.

01

Who is affected

Users of Cloud Foundry UAA (and CF Deployment) that use EC keys for JWT signing.

02

Real-world impact

Attackers could obtain private signing keys and create fraudulent tokens, potentially gaining unauthorized access to protected resources.

03

Why this severity

CVSS v4.0 base score 10.0 (Critical) due to network‑adjacent, low‑complexity attack with high impact on confidentiality and integrity.

04

What to do about it

official fix available
recommended steps
  1. 01Upgrade Cloud Foundry UAA to version v78.13.0 or later.
  2. 02If you are using CF Deployment, upgrade to version v56.1.0 or later (which bundles the fixed UAA).

NVD-referenced vendor advisory

05

Timeline

  1. Jun 1, 2026 · Jun 1, 2026
    Published
    Disclosed and added to the National Vulnerability Database.
  2. Jul 22, 2026 · 13d ago
    Advisory updated
    The NVD record was last revised.
  3. Jul 25, 2026 · 11d ago
    Official fix available
    A vendor patch or mitigation now exists — see the remediation steps above.
06

How it’s attacked

Attack vectorNetwork (remote)
Attack complexityLow
Attack requirementsNone
Privileges requiredNone
User interactionNone needed
Confidentiality impactHigh
Integrity impactHigh
Availability impactLow
07

References & advisories

(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →