GHSA-2jfv-5vqq-f9xqMediumCVSS 4.3
In WhatsUp Gold versions released before 2026.0.2, an improper authorization vulnerability in the...
🔗 CVE IDs covered (1)
📋 Description
In WhatsUp Gold versions released before 2026.0.2, an improper authorization vulnerability in the Scheduled Reports API allows any authenticated user to invoke restricted actions.
🔗 References (5)
- https://nvd.nist.gov/vuln/detail/CVE-2026-65938
- https://community.progress.com/s/article/WhatsUp-Gold-Security-Bulletin-August-2026
- https://docs.progress.com/bundle/whatsupgold-release-notes-26-0/page/WhatsUp-Gold-2026.0-Release-Notes.html
- https://www.progress.com/network-monitoring
- https://github.com/advisories/GHSA-2jfv-5vqq-f9xq