Skip to main content
Press slash or control plus K to focus the search. Use the arrow keys to navigate results and press enter to open a threat.

Threats Tagged 'cwe-269'

View all threats tagged with 'cwe-269'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cwe-269

Threats Tagged 'cwe-269'

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-54319: CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in daytonaio daytonaCVE-2026-54319
0

Daytona is a secure and elastic infrastructure runtime for AI-generated code execution and agent workflows. Prior to 0.186, a sandbox volume reference (volumeId, which may also be a volume name) was forwarded to the runner and used to build the host bind-mount source path without confinement. A reference containing path-traversal sequences could in principle resolve the mount source outside the intended per-volume base directory. This vulnerability is fixed in 0.186.

Join the discussion
CVE-2026-8157: CWE-269 Improper Privilege Management in ViteposCVE-2026-8157
0

The Vitepos WordPress plugin before 3.4.2 does not properly restrict the roles that can be assigned when creating new users via one of its REST API endpoints, allowing authenticated users with a custom Vitepos WordPress plugin before 3.4.2 role to escalate privileges to administrator.

Join the discussion
CVE-2026-50201: CWE-269: Improper Privilege Management in SteeltoeOSS Steeltoe.Management.EndpointCVE-2026-50201
0

Steeltoe is an open source project that provides a collection of libraries that helps users build cloud-native applications. In Steeltoe.Management.Endpoint prior to version 4.2.0 and Steeltoe.Management.EndpointCore prior to version 3.4.0, all Steeltoe actuator endpoints default to `EndpointPermissions.Restricted`, which is mappeds to Cloud Foundry's `read_basic_data` permission (granted to Space Auditors and similar low-trust roles). Sensitive actuators including heap dump, environment, and thread dump do not raise this to `EndpointPermissions.Full`, so CF's `read_sensitive_data` permission flag is not enforced for those endpoints. Spring Boot's equivalent Cloud Foundry integration gates these endpoints with `read_sensitive_data` by default. Steeltoe.Management.Endpoint 4.2.0 and Steeltoe.Management.EndpointCore 3.4.0 patch the issue. If an immediate upgrade is not possible, explicitly set `RequiredPermissions = EndpointPermissions.Full` in the options for `HeapDumpEndpointOptions`, `EnvironmentEndpointOptions`, and `ThreadDumpEndpointOptions`; and/or if heap dump, thread dump, or environment are not needed in production, register only the required actuators individually instead of using `AddAllActuators()`.

Join the discussion
CVE-2026-54415: CWE-862 Missing Authorization in Azuriom Azuriom CMSCVE-2026-54415
0

Azuriom CMS versions prior to 1.2.11 contain a missing authorization vulnerability in server management routes. An authenticated user with admin.access permission can exploit this flaw to create AzLink server tokens and hijack non-admin user accounts by changing their passwords and email addresses through specific HTTP requests. This vulnerability affects all platforms running affected versions and allows unauthorized account takeover without requiring additional user interaction.

Join the discussion
CVE-2026-12165: CWE-269 Improper Privilege Management in contest-gallery Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & StripeCVE-2026-12165
0

The Contest Gallery – Upload & Vote Photos, Media, Sell with PayPal & Stripe plugin for WordPress is vulnerable to Privilege Escalation in all versions up to, and including, 30.0.2 via the `RegistryUserRole` parameter. This is due to the plugin's admin menu being registered at the `edit_posts` capability level — granting Contributor-level users access to the plugin's admin pages and a valid `cg_admin` nonce — while the option-saving handler in `change-options-and-sizes.php` performs no `current_user_can()` capability check beyond `check_admin_referer('cg_admin')`, and the `RegistryUserRole` value is processed only through `sanitize_text_field()` and `htmlentities()` without restriction to an allowlist of permitted role names. This makes it possible for authenticated attackers, with author-level access and above, to overwrite the plugin's stored `RegistryUserRole` option with `administrator`, which the `cg_create_wp_user_from_google_user` function then reads back from the `contest_gal1ery_registry_and_login_options` database table without any allowlist validation and passes directly to `wp_update_user()`, effectively promoting a newly registered Google sign-in account to Administrator.

Join the discussion
CVE-2024-38487: CWE-269: Improper Privilege Management in Dell EMC VxRail ApplianceCVE-2024-38487
0

api-gateway container running with root privilege would allow an attacker to escape the container and access host system to perform unintended actions.

Join the discussion
CVE-2026-8176: CWE-269 Improper Privilege Management in latepoint LatePoint – Calendar Booking Plugin for Appointments and EventsCVE-2026-8176
0

LatePoint – Calendar Booking Plugin for Appointments and Events versions up to and including 5.5.1 contain a privilege escalation vulnerability. Authenticated users with Agent-level access can chain three independent flaws to overwrite an Administrator's password without accessing Administrator-only APIs. This allows attackers to elevate their privileges to Administrator. The vulnerability is tracked as CVE-2026-8176 and has a high severity rating with a CVSS score of 7.5.

Join the discussion
CVE-2026-8935: CWE-269 Improper Privilege Management in WP MAPS PROCVE-2026-8935
0

CVE-2026-8935 is a critical vulnerability in the WP MAPS PRO WordPress plugin before version 6.1.1. It involves improper privilege management where an unauthenticated AJAX action, combined with a publicly available nonce, allows creation of an administrator account and grants interactive admin access via a magic-login URL. This vulnerability enables full administrative control without authentication.

Join the discussion
CVE-2026-46716: CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') in nezhahq nezhaCVE-2026-46716
0

Nezha Monitoring is a self-hostable, lightweight, servers and websites monitoring and O&M tool. From version 1.4.0 to before version 2.0.8, a RoleMember user can create a scheduled cron task with Cover=CronCoverAll, Servers=[] and an arbitrary Command. At every tick of the scheduler, the dashboard pushes that command to every server in the global ServerShared map — including servers that belong to other tenants (admin's servers, other members' servers). Each agent runs the command and returns the output, which is then sent to the attacker's own NotificationGroup → attacker-controlled webhook. This issue has been patched in version 2.0.8.

Join the discussion
CVE-2026-45176: [Discouraged] CWE-269: Improper Privilege Management in CyberArk Software, a Palo Alto Networks Company Idira Endpoint Privilege ManagerCVE-2026-45176
0

Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within high-privileged agent components. A local, low-privileged attacker could exploit this by manipulating an internal communication mechanism or file operation. Under specific circumstances, this could potentially allow the attacker to bypass permission restrictions and execute unauthorized local actions with elevated privileges. CyberArk Security Bulletin: CA26-19

Join the discussion

Showing 1 to 10 of 27 results

Filters:Tag: cwe-269
Page 1 of 3
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses