{
  "title": "CVE of the day — CVE-2026-86184 (CVSS 9,8, critic)",
  "title_variants": [
    {
      "id": "v0",
      "title": "CVE of the day — CVE-2026-86184 (CVSS 9,8, critic)"
    },
    {
      "id": "v1",
      "title": "CVE-2026-86184: critical vulnerability, CVSS 9,8/10, missing authentication type, exploitable"
    }
  ],
  "description": "CVE-2026-86184: critical vulnerability, CVSS 9,8/10, missing authentication type, exploitable remotely, without privileges, without user interaction. Lara Dashboard before 1.3.0 contains an authentication bypass vulnerability in the screenshot-login route that allows unuthenticated attackers to..",
  "keywords": [
    "c",
    "cve-2026-86184",
    "vulnerability",
    "critical vulnerability",
    "cwe-306",
    "cvs",
    "cybersecurity",
    "cybersecurity",
    "♪",
    "security update"
  ],
  "scenes": [
    {
      "title": "CVE-2026- 861",
      "subtitle": "CVSS 9,8",
      "text": "CVE-2026-86184: Critical gravity, CVSS score 9,8 out of 10 according to the National Vulnerability Database."
    },
    {
      "title": "Missing Authentication",
      "subtitle": "missing authentication · CVSS v3.1",
      "text": "Lara Dashboard before 1.3.0 contains an authentication bypass vulnerability in the screenshot-login route that allows unuthenticated attackers to authenticate as any user by email when APP ENV is not production.."
    },
    {
      "title": "EXPOSURE AND MITIGATION",
      "subtitle": "remotely exploitable, without privileges, without user interaction",
      "text": "Remotely exploitable Vulnerability, without privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD."
    }
  ],
  "publication_date": "2026-09-07T00:25:04.184Z",
  "duration": 20,
  "topic": "cve",
  "lang": "en",
  "translation_group": "cve-2026-09-07",
  "poster": "cve-2026-09-07-en.jpg",
  "preview": "cve-2026-09-07-en.gif",
  "og_card": "cve-2026-09-07-en.og.jpg",
  "audiogram": "cve-2026-09-07-en.audiogram.mp4",
  "captions": "cve-2026-09-07-en.vtt",
  "generation": {
    "procedural": true,
    "ai_generated": [
      "background",
      "voice"
    ],
    "real_data_source": "official public API",
    "filmed_real_event": false,
    "disclosure": "Procedurally generated from real public-source data; abstract AI-generated backgrounds; synthetic (TTS) voice. No real event is filmed or altered."
  },
  "transcript_text": "CVE-2026-86184: Critical gravity, CVSS score 9,8 out of 10 according to the National Vulnerability Database. Lara Dashboard before 1.3.0 contains an authentication bypass vulnerability in the screenshot-login route that allows unuthenticated attackers to authenticate as any user by email when APP ENV is not production.. Remotely exploitable Vulnerability, without privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD.",
  "transcript": [
    {
      "start": 0,
      "end": 6.667,
      "text": "CVE-2026-86184: Critical gravity, CVSS score 9,8 out of 10 according to the National Vulnerability Database."
    },
    {
      "start": 6.667,
      "end": 13.333,
      "text": "Lara Dashboard before 1.3.0 contains an authentication bypass vulnerability in the screenshot-login route that allows unuthenticated attackers to authenticate as any user by email when APP ENV is not production.."
    },
    {
      "start": 13.333,
      "end": 20,
      "text": "Remotely exploitable Vulnerability, without privileges, without user interaction. Apply the update of the supplier promptly and consult the official notice on NVD."
    }
  ]
}