CWE-266— Incorrect Privilege Assignment
A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.— MITRE CWE catalog
1,165 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-266page 23 of 24
- CVE-2026-82807HIGHCVSS 8.8EG 8.82026-08-31
A vulnerability was determined in ieungSoft Ultra RAMDisk Pro 1.82. This issue affects some unknown processing in the library URDSCSI.sys of the component Kernel Driver. This manipulation causes improper privilege management. The attack ne…
- CVE-2026-82815HIGHCVSS 7.3EG 7.32026-08-31
A flaw has been found in MegaEase EaseProbe up to 2.3.0. Affected is the function realIP of the file web/server.go of the component Middleware. This manipulation of the argument X-Forwarded-For/X-Real-IP/True-Client-IP causes improper acce…
- CVE-2026-82817MEDIUMCVSS 6.3EG 6.32026-08-31
A vulnerability was found in dibo-software diboot 3.8.0. Affected by this issue is some unknown functionality of the file /admin/ of the component Tenant Administrator Management API. Performing a manipulation of the argument tenantId resu…
- CVE-2026-82818MEDIUMCVSS 6.3EG 6.32026-08-31
A vulnerability was determined in dibo-software diboot 3.8.0. This affects an unknown part of the file /api/iam/tenant/resource of the component Tenant Resource Assignment Handler. Executing a manipulation of the argument tenantId can lead…
- CVE-2026-82833MEDIUMCVSS 6.3EG 6.32026-08-31
A vulnerability was identified in Doccano Open Source Annotation Tools for Machine Learning Practitioners and Auto Labeling Pipeline Module to Annotate a Document Automatically up to 1.8.5. Affected by this issue is the function ExampleDet…
- CVE-2026-82834MEDIUMCVSS 5.4EG 5.42026-08-31
A security flaw has been discovered in Doccano Open Source Annotation Tools for Machine Learning Practitioners and Auto Labeling Pipeline Module to Annotate a Document Automatically up to 1.8.5. This affects the function LabelList of the f…
- CVE-2026-82835MEDIUMCVSS 5.4EG 5.42026-08-31
A weakness has been identified in caoqianming django-vue-admin 1.0. This vulnerability affects unknown code of the file /api/file/. Executing a manipulation of the argument file_id can lead to improper access controls. The attack can be ex…
- CVE-2026-8303HIGHCVSS 7.8EG 7.82026-09-11
Incorrect privilege assignment vulnerability in TUBITAK BILGEM Software Technologies Research Institute Pardus-software allows Privilege Escalation. This issue affects Pardus-software: before 1.0.5.
- CVE-2026-84115HIGHCVSS 8.3EG 8.32026-09-01
A vulnerability was found in Cleo Harmony up to 5.8.1.10. The affected element is an unknown function of the file /api/connections of the component JWT Refresh Token Handler. Performing a manipulation of the argument Bearer results in impr…
- CVE-2026-84756HIGHCVSS 7.1EG 7.12026-09-03
Subscriber Privilege Escalation in WCFM Membership <= 2.11.11 versions.
- CVE-2026-84807MEDIUMCVSS 5.4EG 5.42026-09-02
Kimai (kimai/kimai) through 2.65.0 contains a business logic / improper authorization vulnerability in the default team creation endpoints. An authenticated user with project permission-management privileges can create or use a customer, p…
- CVE-2026-84814CRITICALCVSS 9.8EG 9.82026-09-03
Subscriber Privilege Escalation in Bricksforge <= 3.1.8.8 versions.
- CVE-2026-85241MEDIUMCVSS 6.3EG 6.32026-09-03
A weakness has been identified in SpecterOps BloodHound up to 9.5.1. The affected element is the function NewV2API of the file cmd/api/src/api/registration/v2.go of the component Graph Write Endpoint. Executing a manipulation can lead to i…
- CVE-2026-85400HIGHCVSS 7.5EG 7.52026-09-08
Backend administrators without system maintainer privileges were able to schedule any of the configuration:read, configuration:set, and configuration:show commands. This allowed them to modify arbitrary system configuration, which is norma…
- CVE-2026-85401MEDIUMCVSS 6.3EG 6.32026-09-04
A weakness has been identified in Dolibarr up to 21.0.4/22.0.5/23.0.3. Affected by this issue is some unknown functionality of the file htdocs/core/filemanagerdol/connectors/php/config.inc.php of the component Legacy File Manager. Executin…
- CVE-2026-85513MEDIUMCVSS 6.3EG 6.32026-09-04
A weakness has been identified in StackStorm st2 up to 3.9.0. This issue affects the function assert_user_is_admin_if_user_query_param_is_provided of the file st2api/st2api/controllers/v1/actionexecutions.py of the component NoOp RBAC back…
- CVE-2026-85514MEDIUMCVSS 6.3EG 6.32026-09-04
A security vulnerability has been detected in StackStorm st2 up to 3.9.0. Impacted is an unknown function of the file st2api/st2api/controllers/v1/auth.py of the component API Key Handler. Such manipulation of the argument api_key_api.user…
- CVE-2026-86153CRITICALCVSS 9.1EG 9.12026-09-06
A vulnerability has been found in Tenda CP3 27.5.57.101. This affects the function CRedirServer::SetRedirectEnable of the file Functions/Redirect.cpp. The manipulation leads to improper privilege management. Remote exploitation of the atta…
- CVE-2026-86212MEDIUMCVSS 4.3EG 4.32026-09-06
A vulnerability has been found in Open5GS 2.7.7/2.8.0. This vulnerability affects unknown code of the component AMF/MME. The manipulation leads to improper authorization. The attack is possible to be carried out remotely. The exploit has b…
- CVE-2026-86228MEDIUMCVSS 4.3EG 4.32026-09-06
A security vulnerability has been detected in JeecgBoot up to 3.9.3. This vulnerability affects the function exportXls of the file jeecg-boot/jeecg-boot-module/jeecg-boot-module-airag/src/main/java/org/jeecg/modules/airag/llm/controller/Ai…
- CVE-2026-86275MEDIUMCVSS 5.3EG 5.32026-09-07
A vulnerability was detected in SourceCodester Syllabus-Aligned Learning Management & Examination System 1.0. This vulnerability affects the function register of the file auth.php. Performing a manipulation of the argument role results in …
- CVE-2026-86285MEDIUMCVSS 4.3EG 4.32026-09-07
A vulnerability was detected in BookStack up to 26.05.2. Affected by this issue is the function AttachmentController::getUpdateForm of the file app/Uploads/Controllers/AttachmentController.php of the component Attachment Edit Endpoint. The…
- CVE-2026-86482HIGHCVSS 8.8EG 8.82026-09-07
In JetBrains YouTrack before 2026.2.18634 unchecked group membership changes allowed privilege escalation
- CVE-2026-86500MEDIUMCVSS 5.5EG 5.52026-09-07
In JetBrains YouTrack before 2026.1.14047 a missing escalation check let a user with project update permissions grant themselves Project Admin
- CVE-2026-86512MEDIUMCVSS 6.3EG 6.32026-09-08
A vulnerability was identified in java-json-tools json-patch up to 1.13. This affects the function CopyOperation.apply/MoveOperation.apply of the file src/main/java/com/github/fge/jsonpatch/CopyOperation.java of the component Copy Move Ope…
- CVE-2026-86516MEDIUMCVSS 4.7EG 4.72026-09-08
A vulnerability was detected in elenavanengelenmaslova mocknest-serverless 0.9.0. The affected element is an unknown function of the file deployment/aws/shared/github-oidc-role.yaml of the component AWS GitHub OIDC Deployment Helper Script…
- CVE-2026-86804MEDIUMCVSS 5.3EG 5.32026-09-08
A vulnerability was identified in seakee CPA-Manager-Plus up to 1.11.10. This vulnerability affects the function CPAResource of the file apps/manager-server/internal/http/controller/proxy/handler.go of the component HTTP Handler. The manip…
- CVE-2026-86830HIGHCVSS 7.2EG 7.22026-09-14
Incorrect privilege assignment in Temporary Elevated Access Management (TEAM) for AWS IAM Identity Center solution before version 1.5.1 might allow an authenticated remote user with application-level access to read, approve, modify, or rev…
- CVE-2026-8743MEDIUMCVSS 6.3EG 6.32026-05-17
A vulnerability was found in Open5GS up to 2.7.6. This impacts the function ran_ue_find_by_amf_ue_ngap_id of the file src/amf/context.c of the component AMF/MME. Performing a manipulation results in improper authorization. It is possible t…
- CVE-2026-8747MEDIUMCVSS 6.3EG 6.32026-05-17
A weakness has been identified in Z-BlogPHP 1.7.4.3430. This affects the function CheckComment of the file zb_system/function/c_system_event.php of the component Commend Approval Handler. This manipulation causes improper authorization. Th…
- CVE-2026-8752MEDIUMCVSS 5.3EG 5.32026-05-17
A weakness has been identified in h2oai h2o-3 up to 7402. This vulnerability affects the function exec of the file h2o-core/src/main/java/water/rapids/ast/prims/misc/AstSetProperty.java of the component Rapids setproperty Primitive Handler…
- CVE-2026-90487MEDIUMCVSS 4.3EG 4.32026-09-12
A vulnerability was found in Xuxueli xxl-job up to 3.4.2. Affected by this issue is some unknown functionality of the file xxl-job-admin/src/main/java/com/xxl/job/admin/business/controller/JobGroupController.java. The manipulation results …
- CVE-2026-90493HIGHCVSS 8.8EG 8.82026-09-13
A vulnerability was detected in Tonec Internet Download Manager up to 6.42 Build 63 on Windows. The impacted element is an unknown function of the file idmwfp.sys of the component Kernel Driver. The manipulation results in improper access …
- CVE-2026-90499MEDIUMCVSS 5.4EG 5.42026-09-13
A security flaw has been discovered in lenve vhr 1.0-SNAPSHOT. This affects the function HrInfoController.updatePass of the file /hr/pass of the component Password Update Handler. The manipulation of the argument hrid results in improper a…
- CVE-2026-90501MEDIUMCVSS 6.3EG 6.32026-09-13
A security vulnerability has been detected in lenve vhr 1.0-SNAPSHOT. This issue affects the function HrInfoController.updateHr of the file HrMapper.xml. Such manipulation of the argument Password leads to improper privilege management. Th…
- CVE-2026-90507MEDIUMCVSS 6.3EG 6.32026-09-13
A vulnerability was identified in vvbbnn00 WARP-Clash-API up to c7bf2360073959861219b422e51ae86411051b46. Affected is the function get_surge_subscription of the file services/subscription.py of the component Subscription Handler. Such mani…
- CVE-2026-90518MEDIUMCVSS 6.3EG 6.32026-09-13
A security flaw has been discovered in PHPGurukul Bank Locker Management System 1.0. This impacts an unknown function of the file sidebar.php. The manipulation of the argument UserType results in improper access controls. The attack may be…
- CVE-2026-90520MEDIUMCVSS 6.3EG 6.32026-09-13
A vulnerability has been found in jaychouchannel Tourism-Management-System up to 84d8ec384f669df3985293dab293bb7b477efa64. This vulnerability affects unknown code of the file AuthorizationInterceptor.java of the component Authorization Int…
- CVE-2026-90523HIGHCVSS 7.3EG 7.32026-09-13
A vulnerability was identified in jaychouchannel Tourism-Management-System up to 229956e20dbd4a80eeff14535e44d3099502af09. The affected element is an unknown function of the file travel/src/main/java/com/controller/UsersController.java of …
- CVE-2026-90565MEDIUMCVSS 5.3EG 5.32026-09-13
A security flaw has been discovered in Rizwan17 inventory-management-system up to bfe78a330d01bb26b9daec5dc9ecd5c77900e03f. Affected is an unknown function of the file dashboard.php. Performing a manipulation of the argument userid results…
- CVE-2026-90566HIGHCVSS 7.3EG 7.32026-09-13
A weakness has been identified in Rizwan17 inventory-management-system up to bfe78a330d01bb26b9daec5dc9ecd5c77900e03f. Affected by this vulnerability is the function createUserAccount of the file register.php of the component Registration …
- CVE-2026-90787HIGHCVSS 7.3EG 7.32026-09-14
A vulnerability was identified in Soarkey StudentManagement up to e08f7f1d5015af407aa4cca0ada3dea189b4937e. Affected is the function RegisterServlet.doPost of the file code/WebContent/register.html of the component Registration Workflow. S…
- CVE-2026-90810MEDIUMCVSS 6.3EG 6.32026-09-14
A security flaw has been discovered in cosmicstack-labs mercury-agent up to 1.1.13. The impacted element is the function PermissionManager.checkShellCommand of the file mercury-agent/src/capabilities/permissions.ts of the component Shell C…
- CVE-2026-90812MEDIUMCVSS 4.3EG 4.32026-09-14
A security vulnerability has been detected in cosmicstack-labs mercury-agent up to 1.2.0. This impacts the function checkShellCommand of the file src/capabilities/permissions.ts of the component Shell Command Permission. The manipulation l…
- CVE-2026-90851MEDIUMCVSS 6.3EG 6.32026-09-15
A flaw has been found in PHPGurukul Hostel Management System 3.0. This affects an unknown part of the file /admin/includes/checklogin.php. This manipulation of the argument ID causes improper access controls. Remote exploitation of the att…
- CVE-2026-90856HIGHCVSS 7.3EG 7.32026-09-15
A security vulnerability has been detected in SourceCodester College Notes Gallery Management System 1.0. This impacts an unknown function of the file signup.php of the component Registration Flow. Such manipulation of the argument role le…
- CVE-2026-91930HIGHCVSS 7.5EG 7.52026-09-15
Flowise before 3.1.4 fails to scope enterprise organization and workspace membership APIs to the caller's tenant, allowing authenticated users to supply arbitrary organization IDs. Attackers can add themselves as organization owners, creat…
- CVE-2026-93504MEDIUMCVSS 6.3EG 6.32026-09-18
A vulnerability has been found in SveltyCMS 0.0.6. This affects an unknown part of the file src/routes/api/[...path]/+server.ts of the component User Attribute Update Endpoint. Such manipulation leads to improper access controls. It is pos…
- CVE-2026-9376MEDIUMCVSS 6.3EG 6.32026-05-24
A vulnerability was determined in JPress up to 1.0.3. The affected element is an unknown function of the file /ucenter/article/doWriteSave of the component UCenter Article Submission Endpoint. Executing a manipulation of the argument id/us…
- CVE-2026-93961MEDIUMCVSS 5.3EG 5.32026-09-20
A security flaw has been discovered in Dromara UJCMS up to 12.3.1. The affected element is the function usernameExist of the file ujcms-cms/src/main/java/com/ujcms/cms/core/web/api/UserController.java of the component UserController. Perfo…
Map vulnerabilities like CWE-266 to your infrastructure
EchelonGraph correlates every CVE — across CWE-266 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →