CVE-2025-29991 | Yubico YubiKey up to 5.7.3 CTAP PIN UV Auth Protocol One weak authentication
A vulnerability was found in Yubico YubiKey up to 5.7.3. It has been classified as problematic. Affected is an unknown function of the component CTAP PIN UV Auth Protocol One. The manipulation leads to weak authentication.
This vulnerability is traded as CVE-2025-29991. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.