Securing your application stack
Kodem CORE
AI built to think like an attacker
Latest news
How to
Get to know us
Our partner
Scaling AppSec Accuracy with a Two-Person Team
Scaling AppSec Without Scaling Headcount: How Rapyd Used Kodem to Shift from Volume to Impact
Alias:
Mercku M6a devices through 2.1.0 allow password changes via intranet CSRF attacks.
Severity / CVSS Score: (Critical)
CWE:
Discovery date: October 22, 2025
Authentication required: NoneYes
Attack Vector: None