CVE-2026-61979
Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.
CVSS
8.1
Alto
EPSS
0.3%
p20
KEV
—
Exploit Today
6
0-100
Publicado: 13 ago 2026 · Última mod.: 14 ago 2026 · CWE-266
0.3%EPSS · 30 días0.3%
2026-08-142026-09-04
Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.
CVECVSSEPSSKEVRExplotTítuloVis.
CVE-2026-855146.3 MED—
——0A security vulnerability has been detected in StackStorm st2 up to 3.9.0. Impacted is an unknown function of the file st2api/st2api/controllers/v1/auth.py of the component API Key Handler. Such manipulation of the argument api_key_api.user leads to improper privilege management. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. The project was informed of the problem early through an issue report but has not responded yet.1dCVE-2026-855136.3 MED—
——0A weakness has been identified in StackStorm st2 up to 3.9.0. This issue affects the function assert_user_is_admin_if_user_query_param_is_provided of the file st2api/st2api/controllers/v1/actionexecutions.py of the component NoOp RBAC backend. This manipulation of the argument User causes improper privilege management. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be used for attacks. Prior advisory CVE-2022-44009 was reported as a follow-up on the same sink, but this issue is distinct: it needs no Jinja RBAC und affects default install with RBAC disabled. The project was informed of the problem early through an issue report but has not responded yet.2dCVE-2026-854016.3 MED16.2%
——5A weakness has been identified in Dolibarr up to 21.0.4/22.0.5/23.0.3. Affected by this issue is some unknown functionality of the file htdocs/core/filemanagerdol/connectors/php/config.inc.php of the component Legacy File Manager. Executing a manipulation can lead to improper access controls. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks. Upgrading to version 23.0.4 can resolve this issue. This patch is called ef6631e9bd5ec4b8cec0e88f1796d3d10dad02ec. It is suggested to upgrade the affected component.1dCVE-2026-852416.3 MED18.9%
——6A weakness has been identified in SpecterOps BloodHound up to 9.5.1. The affected element is the function NewV2API of the file cmd/api/src/api/registration/v2.go of the component Graph Write Endpoint. Executing a manipulation can lead to improper authorization. It is possible to launch the attack remotely. Upgrading to version 9.6.0-rc1, 9.6.0 and 9.7.0-rc3 is sufficient to fix this issue. This patch is called 39d1276a63e95a7713f954dea632a19651d9cebb. You should upgrade the affected component.1dCVE-2026-848149.8 CRÍ29.5%
——9Subscriber Privilege Escalation in Bricksforge <= 3.1.8.8 versions.2dCVE-2026-847567.1 ALT11.5%
——3Subscriber Privilege Escalation in WCFM Membership <= 2.11.11 versions.2d