CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

Search Vulnerabilities

 Software

Searching vulnerabilities affecting “ascertia”

7 vulnerabilities found for “ascertia”

CVE-2025-54321
CRITICAL9.8

In Ascertia SigningHub through 8.6.8, there is a lack of rate limiting on the reset password function, leading to an email bombing vulnerability. An authenticated attacker can exploit this by automating reset password requests.

ascertia / signinghub
Network
Published Nov 18, 2025
CVE-2025-54320
MEDIUM4.3

In Ascertia SigningHub through 8.6.8, there is a lack of rate limiting on the invite user function, leading to an email bombing vulnerability. An authenticated attacker can exploit this by automating invite requests.

ascertia / signinghub
Network
Published Nov 18, 2025
CVE-2025-56223
HIGH7.5

A lack of rate limiting in the component /Home/UploadStreamDocument of SigningHub v8.6.8 allows attackers to cause a Denial of Service (DoS) via uploading an excessive number of files.

ascertia / signinghub
Network
Published Oct 20, 2025
CVE-2025-56219
HIGH7.1

Incorrect access control in SigningHub v8.6.8 allows attackers to arbitrarily add user accounts without any rate limiting. This can lead to a resource exhaustion and a Denial of Service (DoS) when an excessively large number of user accounts are created.

ascertia / signinghub
Network
Published Oct 20, 2025
CVE-2025-56224
HIGH8.1

A lack of rate limiting in the One-Time Password (OTP) verification endpoint of SigningHub v8.6.8 allows attackers to bypass verification via a bruteforce attack.

ascertia / signinghub
Network
Published Oct 20, 2025
CVE-2025-56218
CRITICAL9.8

An arbitrary file upload vulnerability in SigningHub v8.6.8 allows attackers to execute arbitrary code via uploading a crafted PDF file.

ascertia / signinghub
Network
Published Oct 17, 2025
CVE-2025-56221
CRITICAL9.8

A lack of rate limiting in the login mechanism of SigningHub v8.6.8 allows attackers to bypass authentication via a brute force attack.

ascertia / signinghub
Network
Published Oct 17, 2025