Finka develops a suite of accounting and business-management applications including invoicing, financial records, payroll, and inventory modules that serve small and medium-sized enterprises. The observed vulnerability signal centers on the use of hard-coded credentials across these products, a structural weakness that reflects embedded authentication patterns in legacy or tightly coupled systems. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Finka over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-13776HIGH Multiple Finka programs use hard-coded Firebird database credentials (shared across all instances of this software). A malicious attacker in local network who knows default credent | Feb 24, 2026 | 7.1 | 24 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Finka.
Media articles that mention a CVE ID that affects a product developed by Finka — matched by CVE ID, not by vendor name.