CVE-2026-81720: Identity Protection Py Cwe 000 Cve 2026 81720cve-2026-81720-identity-protection-py-cwe-000-cve-2026-81720
Argon2 KDF cost parameters (such as memory_cost) are passed directly to key derivation without prior upper-bound validation. If derived from untrusted files or configuration, an excessively high memory_cost can lead to an out-of-memory denial of service.