CVE-2026-59501
CWE-284: Improper Access Control
CVSS
8.2
High
EPSS
—
KEV
—
Exploit Today
0
0-100
Published: Aug 13, 2026 · Last modified: Aug 13, 2026 · CWE-284
Not enough EPSS history yet.
CWE-284: Improper Access Control
CVECVSSEPSSKEVRExploitTitleMod.
CVE-2026-595058.6 HIG—
——0CWE-284: Improper Access Control3hCVE-2026-133677.8 HIG—
——0IBM Informix Dynamic Server 14.10, and 15.0 contain a local privilege escalation vulnerability in the oninit setuid-root utility.16hCVE-2026-599177.8 HIG—
——0Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.17, contain Improper Access Control vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges and arbitrary code execution.8hCVE-2026-599147.8 HIG—
——0Dell Display and Peripheral Manager (DDPM Windows), versions prior to 2.3.0.17, contain an Authentication Bypass by Spoofing vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges and arbitrary code execution.8hCVE-2026-67287——
——0Joomla Extension - joomshaper.com - Unauthenticated comment creation in SP Page Builder < 6.8.0 - An unauthenticated attacker can create comments on instances with disabled guest commenting by overriding the setting in question with user supplied input.22hCVE-2026-67284—27.9%
——8Joomla Extension - tabaoca.org - Improper ACL implementation allows file operations in Cotton Cloud < 2.0.3 - Authenticated users could perform various file-related operations (read, delete, overwrite, re-assign permissions) on files owned by other users.1d