CWE-1280— Access Control Check Implemented After Asset is Accessed
A product's hardware-based access control check occurs after the asset has been accessed.— MITRE CWE catalog
2 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-1280page 1 of 1
- CVE-2026-3607MEDIUMCVSS 4.3EG 4.32026-05-14
GitLab has remediated an issue in GitLab CE/EE affecting all versions from 18.3 before 18.9.7, 18.10 before 18.10.6, and 18.11 before 18.11.3 that could have allowed an authenticated user with developer-role permissions to bypass package p…
- CVE-2026-7487LOWCVSS 3.5EG 3.52026-08-26
GitLab has remediated an issue in GitLab EE affecting all versions from 13.1 before 19.1.7, 19.2 before 19.2.5, and 19.3 before 19.3.1 that, under certain conditions, an authenticated user with reporter-role permissions who authored a merg…
Map vulnerabilities like CWE-1280 to your infrastructure
EchelonGraph correlates every CVE — across CWE-1280 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →