CWE-266— Incorrect Privilege Assignment
A product incorrectly assigns a privilege to a particular actor, creating an unintended sphere of control for that actor.— MITRE CWE catalog
1,100 active CVEs classified under this weakness category. Sourced from NVD, GHSA, and vendor advisories. Full definition on MITRE →
CVEs classified under CWE-266page 21 of 22
- CVE-2026-53902MEDIUMCVSS 6.5EG 6.52026-07-01
MCO does not properly enforce authorization checks in the /customer/servlet/mco/webapi/profile-sections/group-membership endpoint. An authenticated user can modify their group membership without proper authorization checks, allowing privil…
- CVE-2026-54196MEDIUMCVSS 6.8EG 6.82026-06-17
Subscriber Privilege Escalation in JetFormBuilder <= 3.6.1 versions.
- CVE-2026-54805HIGHCVSS 8.8EG 8.82026-06-17
Subscriber Privilege Escalation in Falang multilanguage <= 1.4.2 versions.
- CVE-2026-54807CRITICALCVSS 9.8EG 9.82026-06-17
Unauthenticated Privilege Escalation in Registration Form for WooCommerce <= 1.0.9 versions.
- CVE-2026-5484MEDIUMCVSS 5.3EG 5.32026-04-03
A weakness has been identified in BookStackApp BookStack up to 26.03. Affected is the function chapterToMarkdown of the file app/Exports/ExportFormatter.php of the component Chapter Export Handler. Executing a manipulation of the argument …
- CVE-2026-5526CRITICALCVSS 9.8EG 9.82026-04-04
A security flaw has been discovered in Tenda 4G03 Pro up to 1.0/1.1/04.03.01.53/192.168.0.1. Affected by this vulnerability is an unknown functionality of the file /bin/httpd. The manipulation results in improper access controls. The attac…
- CVE-2026-5529MEDIUMCVSS 4.3EG 4.32026-04-05
A vulnerability was detected in Dromara lamp-cloud up to 5.8.1. This vulnerability affects the function pageUser of the file /defUser/pageUser of the component DefUserController. Performing a manipulation results in improper authorization.…
- CVE-2026-5569CRITICALCVSS 9.8EG 9.82026-04-05
A vulnerability was found in Technostrobe HI-LED-WR120-G2 5.5.0.1R6.03.30. Impacted is an unknown function of the file /Technostrobe/ of the component Endpoint. The manipulation results in improper access controls. The attack may be perfor…
- CVE-2026-56008HIGHCVSS 8.8EG 8.82026-06-26
Contributor Privilege Escalation in Fusion Builder <= 3.15.4 versions.
- CVE-2026-56010HIGHCVSS 8.8EG 8.82026-06-26
Subscriber Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions.
- CVE-2026-56028CRITICALCVSS 9.8EG 9.82026-06-26
Unauthenticated Privilege Escalation in Easy Elements for Elementor – Addons & Website Templates <= 1.4.9 versions.
- CVE-2026-56030CRITICALCVSS 9.8EG 9.82026-06-26
Unauthenticated Privilege Escalation in Paytium <= 5.0.2 versions.
- CVE-2026-56033CRITICALCVSS 9.8EG 9.82026-06-26
Unauthenticated Privilege Escalation in Dokan Pro <= 5.0.4 versions.
- CVE-2026-56247HIGHCVSS 8.8EG 8.82026-07-01
Capgo before 12.128.2 allows org admins to assign org-scoped RBAC roles at app scope without validating role scope compatibility, including to pending invitees. Attackers can pre-seed malformed high-privilege bindings that survive invite a…
- CVE-2026-56251MEDIUMCVSS 6.5EG 6.52026-06-21
Capgo before 12.128.2 contains a broken row level security policy in the org_users table that allows authenticated users to elevate privileges from admin to super_admin. Attackers can exploit the insufficient RLS enforcement to gain unauth…
- CVE-2026-5642HIGHCVSS 7.3EG 7.32026-04-06
A vulnerability was determined in Cyber-III Student-Management-System up to 1a938fa61e9f735078e9b291d2e6215b4942af3f. This affects an unknown function of the file /viva/update.php of the component HTTP POST Request Handler. This manipulati…
- CVE-2026-57386HIGHCVSS 8.8EG 8.82026-07-13
Incorrect Privilege Assignment vulnerability in Kodezen LLC aBlocks ablocks allows Privilege Escalation.This issue affects aBlocks: from n/a through < 2.9.1.
- CVE-2026-57410HIGHCVSS 8.8EG 8.82026-07-13
Incorrect Privilege Assignment vulnerability in MailerPress Team MailerPress mailerpress allows Privilege Escalation.This issue affects MailerPress: from n/a through <= 2.0.2.
- CVE-2026-57501UnratedEG not assessed2026-07-09
Zen is a firefox-based browser. Prior to 1.21.5b, Zen's glance and split-view context-menu actions, Open link in glance and Split link in new tab, load a page-controlled link URL with the System principal instead of the originating page's …
- CVE-2026-57692CRITICALCVSS 9.8EG 9.82026-07-01
Incorrect Privilege Assignment vulnerability in LCweb PrivateContent allows Privilege Escalation. This issue affects PrivateContent: from n/a through 9.9.2.
- CVE-2026-57768HIGHCVSS 8.2EG 8.22026-07-13
Incorrect Privilege Assignment vulnerability in favethemes Houzez Login Register houzez-login-register allows Privilege Escalation.This issue affects Houzez Login Register: from n/a through <= 3.3.3.
- CVE-2026-57813CRITICALCVSS 9.8EG 9.82026-07-13
Incorrect Privilege Assignment vulnerability in properfraction MailOptin mailoptin allows Privilege Escalation.This issue affects MailOptin: from n/a through <= 1.2.77.3.
- CVE-2026-58435MEDIUMCVSS 5.4EG 5.42026-07-21
Gitea LFS Deploy-Key Privilege Escalation
- CVE-2026-59093HIGHCVSS 8.8EG 8.82026-07-02
Weaviate before 1.38.0 does not verify that a principal performing an RBAC role assignment holds the permissions granted by the assigned role. The assignRoleToUser and assignRoleToGroup handlers (POST /authz/users/{id}/assign and /authz/gr…
- CVE-2026-59540CRITICALCVSS 9.8EG 9.82026-07-23
Unauthenticated Privilege Escalation in SMS Alert Order Notifications <= 3.9.6 versions.
- CVE-2026-59541HIGHCVSS 8.8EG 8.82026-07-23
Subscriber Privilege Escalation in WP BASE Booking <= 6.3.1 versions.
- CVE-2026-5999MEDIUMCVSS 6.3EG 6.32026-04-10
A vulnerability has been found in JeecgBoot up to 3.9.1. This impacts an unknown function of the component SysAnnouncementController. Such manipulation leads to improper authorization. The attack can be launched remotely. The exploit has b…
- CVE-2026-6105HIGHCVSS 7.3EG 7.32026-04-11
A security vulnerability has been detected in perfree go-fastdfs-web up to 1.3.7. This affects an unknown part of the file src/main/java/com/perfree/controller/InstallController.java of the component doInstall Interface. The manipulation l…
- CVE-2026-61951CRITICALCVSS 9.8EG 9.82026-07-23
Unauthenticated Privilege Escalation in TrueBooker <= 1.2.3 versions.
- CVE-2026-61979HIGHCVSS 8.1EG 8.12026-08-13
Unauthenticated Privilege Escalation in SAML SP Single Sign On <= 5.4.3 versions.
- CVE-2026-6201MEDIUMCVSS 5.4EG 5.42026-04-13
A vulnerability was identified in CodeAstro Online Job Portal 1.0. The impacted element is an unknown function of the file /jobs/job-delete.php of the component Delete Job Posting Handler. Such manipulation of the argument ID leads to impr…
- CVE-2026-64639CRITICALCVSS 9.3EG 9.32026-08-12
Incorrect database cloning process in Plesk from 18.0.52 before 18.0.79.6 and 18.0.80.2 allows a low-privileged user (customer, reseller) to execute arbitrary code on behalf of the database server administrator.
- CVE-2026-65507CRITICALCVSS 9.8EG 9.82026-08-06
Unauthenticated Privilege Escalation in AIWU <= 1.5.6 versions.
- CVE-2026-65559HIGHCVSS 7.2EG 7.22026-08-06
Shop manager Privilege Escalation in Order Delivery Date for WooCommerce <= 4.6.0 versions.
- CVE-2026-6564MEDIUMCVSS 4.3EG 4.32026-04-19
A vulnerability was found in EMQ EMQX Enterprise up to 6.1.0. The impacted element is an unknown function of the component Session Handling. The manipulation results in improper authorization. It is possible to launch the attack remotely. …
- CVE-2026-6572MEDIUMCVSS 5.6EG 5.62026-04-19
A security vulnerability has been detected in Collabora KodExplorer up to 4.52. Affected by this issue is some unknown functionality of the file /app/controller/share.class.php of the component fileUpload Endpoint. The manipulation of the …
- CVE-2026-6609MEDIUMCVSS 6.3EG 6.32026-04-20
A flaw has been found in liangliangyy DjangoBlog up to 2.1.0.0. The affected element is the function form_valid of the file oauth/views.py. This manipulation of the argument oauthid causes improper authorization. The attack may be initiate…
- CVE-2026-6634MEDIUMCVSS 6.3EG 6.32026-04-20
A weakness has been identified in usememos memos up to 0.22.1. This affects the function memos_access_token of the file src/App.tsx of the component UpdateInstanceSetting. This manipulation of the argument additionalStyle/additionalScript …
- CVE-2026-66424CRITICALCVSS 9.8EG 9.82026-08-13
Unauthenticated Privilege Escalation in SMS Alert Order Notifications <= 3.9.7 versions.
- CVE-2026-66648CRITICALCVSS 9.8EG 9.82026-08-24
Unauthenticated Privilege Escalation in Jawn <= 1.4.2 versions.
- CVE-2026-66661HIGHCVSS 7.7EG 7.72026-08-13
Subscriber Privilege Escalation in Directories Pro <= 2.0.5 versions.
- CVE-2026-66662CRITICALCVSS 9.8EG 9.82026-08-06
Unauthenticated Privilege Escalation in Frontend Admin by DynamiApps <= 3.29.10 versions.
- CVE-2026-66682CRITICALCVSS 9.8EG 9.82026-08-20
Unauthenticated Privilege Escalation in Abandoned Cart Pro for WooCommerce <= 10.4.0 versions.
- CVE-2026-6750HIGHCVSS 8.8EG 8.82026-04-21
Privilege escalation in the Graphics: WebRender component. This vulnerability was fixed in Firefox 150, Firefox ESR 115.35, Firefox ESR 140.10, Thunderbird 150, and Thunderbird 140.10.
- CVE-2026-67846HIGHCVSS 7.8EG 7.82026-08-18
Berkeley Out-of-Order Machine (BOOM) commit 5223e44cfeb26f41380057a2eb4d651197475f69 contains a potential incorrect privilege assignment issue in the v3 and v4 NBDTLB implementations. The raw mstatus.SUM value participates in the read and …
- CVE-2026-68568MEDIUMCVSS 6.3EG 6.32026-08-18
Subscriber Privilege Escalation in MasterStudy LMS <= 3.7.41 versions.
- CVE-2026-6977HIGHCVSS 7.3EG 7.32026-04-25
A security vulnerability has been detected in vanna-ai vanna up to 2.0.2. The affected element is an unknown function of the component Legacy Flask API. The manipulation leads to improper authorization. It is possible to initiate the attac…
- CVE-2026-7091MEDIUMCVSS 6.3EG 6.32026-04-27
A flaw has been found in code-projects Invoice System in Laravel 1.0. This impacts an unknown function of the file /user of the component User Management Handler. This manipulation causes improper authorization. Remote exploitation of the …
- CVE-2026-7092MEDIUMCVSS 6.3EG 6.32026-04-27
A vulnerability has been found in code-projects Invoice System in Laravel 1.0. Affected is an unknown function of the file /profile/ of the component Profile Handler. Such manipulation of the argument ID leads to improper authorization. Th…
- CVE-2026-7093MEDIUMCVSS 6.3EG 6.32026-04-27
A vulnerability was found in code-projects Invoice System in Laravel 1.0. Affected by this vulnerability is an unknown functionality of the file /invoice/ of the component Invoice Endpoint. Performing a manipulation of the argument ID resu…
Map vulnerabilities like CWE-266 to your infrastructure
EchelonGraph correlates every CVE — across CWE-266 and 150+ other weakness categories — against the assets you actually run. See blast radius, fix versions, and remediation steps in one graph.
Start Free Scan →