← Retour à la recherche de CVE

CVE-2026-36102

Bluewave Labs Checkmate

Description

An issue in the inviteController.js component in Bluewave Labs Checkmate <=3.3.0 allows remote authenticated administrators to escalate privileges to superadmin via the role parameter to the /api/v1/invite endpoint.

EPSS 0.22100000000000003%Risque 0
Voir la source
Publication
2026-08-27 20:17:40
Versions concernées
<=3.3.0
Type
Application web
Dernière modification
2026-08-27 20:17:40
Vecteur
Pending