CVE-2026-32729 | Runtipi up to 4.8.0 /api/auth/verify-totp excessive authentication (EUVD-2026-12180)
A vulnerability was found in Runtipi up to 4.8.0. It has been rated as problematic. Affected by this vulnerability is an unknown functionality of the file /api/auth/verify-totp. This manipulation causes improper restriction of excessive authentication attempts.
This vulnerability appears as CVE-2026-32729. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is advised.