ThreatCluster

Cal.com Vulnerability Allows Bypass of Authentication with Fake TOTP Codes

First seen 8 Dec 2025, 14:53 UTC GbhackersCybersecuritynewsCyberpress 54

Article Content

Browse articles
ThreatCluster

A critical vulnerability in Cal.com has been identified that enables attackers to bypass authentication by using fake Time-based One-Time Password (TOTP) codes. This flaw poses a significant risk to users relying on TOTP for secure access. The specific details regarding the discovery and exploitation of this vulnerability have been reported by multiple cybersecurity news platforms.