← Zurück zur CVE-Suche

CVE-2026-36102

Bluewave Labs Checkmate

Beschreibung

An issue in the inviteController.js component in Bluewave Labs Checkmate <=3.3.0 allows remote authenticated administrators to escalate privileges to superadmin via the role parameter to the /api/v1/invite endpoint.

EPSS 0.22100000000000003%Risiko 0
Quelle öffnen
Veröffentlicht
2026-08-27 20:17:40
Betroffene Versionen
<=3.3.0
Typ
Webanwendung
Zuletzt geändert
2026-08-27 20:17:40
Vektor
Pending