Robuta

https://github.security.telekom.com/2026/04/pack2theroot-linux-local-privilege-escalation.html Pack2TheRoot (CVE-2026-41651): Cross-Distro Local Privilege Escalation Vulnerability | Telekom... Apr 22, 2026 - Pack2TheRoot (CVE-2026-41651) is a local privilege escalation (LPE) vulnerability that affects multiple Linux distributions in default installations. privilege escalationcvecross https://security.archlinux.org/ASA-201703-13 [ASA-201703-13] linux-zen: privilege escalation - Arch Linux privilege escalationasalinuxzenarch https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/UZ74G5B2IJXIBWRTZDAAG5FTECTBVJK2/?sort=date [arch-security] [ASA-201601-30] blueman: privilege escalation - Arch-security - lists.archlinux.org privilege escalationarchsecurityasa https://unit42.paloaltonetworks.com/fr/tag/privilege-escalation-fr/ privilege escalation Archives - Unit 42 privilege escalationarchivesunit https://docs.cloud.google.com/security-command-center/docs/findings/threats/agent-platform-polkit-local-privilege-escalation-vulnerability Privilege Escalation: Polkit Local Privilege Escalation Vulnerability (CVE-2021-4034) | Security... Learn more about 'Privilege Escalation: Polkit Local Privilege Escalation Vulnerability (CVE-2021-4034)' threat findings. privilege escalationpolkitlocalvulnerabilitycve https://docs.cloud.google.com/security-command-center/docs/findings/threats/ai-anomalous-sa-delegation-multistep-admin-activity Privilege Escalation: Anomalous Multistep Service Account Delegation for AI Admin Activity |... Learn more about 'Privilege Escalation: Anomalous Multistep Service Account Delegation for AI Admin Activity' threat findings. privilege escalationservice accountfor aianomalousmultistep https://lwn.net/Articles/166223/ pinentry: local privilege escalation [LWN.net] privilege escalationpinentrylocallwn https://advisories.gitlab.com/golang/github.com/coder/coder/v2/CVE-2025-58437/ Coder vulnerable to privilege escalation could lead to a cross workspace compromise | GitLab... CVE-2025-58437 Coder vulnerable to privilege escalation could lead to a cross workspace compromise: Insecure session handling opened room for a privilege... privilege escalation https://advisories.gitlab.com/maven/org.xwiki.platform/xwiki-platform-oldcore/CVE-2024-31981/ XWiki Platform: Privilege escalation (PR) from user registration through PDFClass | GitLab Advisory... CVE-2024-31981 XWiki Platform: Privilege escalation (PR) from user registration through PDFClass: Remote code execution is possible via PDF export templates.... privilege escalation https://advisories.gitlab.com/npm/@paperclipai/server/CVE-2026-41208/ Paperclip: Privilege Escalation via Agent-Controlled workspaceStrategy.provisionCommand Leading to... CVE-2026-41208 Paperclip: Privilege Escalation via Agent-Controlled workspaceStrategy.provisionCommand Leading to OS Command Execution: Paperclip contains a... privilege escalationpaperclipviaagentcontrolled https://mailman.mit.edu/pipermail/krbdev/2006-August/004914.html MITKRB-SA-2006-001: multiple local privilege escalation vulnerabilities privilege escalationsamultiplelocalvulnerabilities https://advisories.gitlab.com/golang/github.com/open-feature/open-feature-operator/CVE-2023-29018/ OpenFeature Operator vulnerable to Cluster-level Privilege Escalation | GitLab Advisory Database... CVE-2023-29018 OpenFeature Operator vulnerable to Cluster-level Privilege Escalation: Impact On a node controlled by an attacker or malicious user, the lax... privilege escalationopenfeatureoperatorvulnerablecluster https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/Cisco-SA-20150413-CVE-2015-0693 Cisco Web Security Appliance Python File Processing Privilege Escalation Vulnerability A vulnerability in the status-checking process of remote access tunnels for supporting Cisco Web Security Appliances (WSA) could allow an authenticated, local... web securityfile processingprivilege escalationciscoappliance https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190306-nxos-escalation Cisco NX-OS Software Privilege Escalation Vulnerability A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated, local attacker to access sensitive data that could be used... privilege escalationcisconxossoftware https://advisories.gitlab.com/golang/github.com/adguardteam/adguardhome/CVE-2024-36586/ AdGuardHome privilege escalation vulnerability | GitLab Advisory Database (GLAD) CVE-2024-36586 AdGuardHome privilege escalation vulnerability: An issue in AdGuardHome v0.93 to latest allows unprivileged attackers to escalate privileges via... privilege escalationadguardhomevulnerabilitygitlabadvisory https://advisories.gitlab.com/maven/org.apache.cassandra/cassandra-all/CVE-2026-27314/ Apache Cassandra is vulnerable to privilege escalation in an mTLS environment using... CVE-2026-27314 Apache Cassandra is vulnerable to privilege escalation in an mTLS environment using MutualTlsAuthenticator: Privilege escalation in Apache... apache cassandraprivilege escalation https://lwn.net/Articles/495451/ samba: privilege escalation [LWN.net] privilege escalationsambalwn https://advisories.gitlab.com/golang/mosn.io/mosn/CVE-2021-32163/ Privilege escalation in MOSN | GitLab Advisory Database (GLAD) CVE-2021-32163 Privilege escalation in MOSN: Authentication vulnerability in MOSN v.0.23.0 allows attacker to escalate privileges via case-sensitive JWT... privilege escalationmosngitlabadvisorydatabase https://docs.cloud.google.com/security-command-center/docs/findings/threats/ai-agent-suspicious-token-generation-implicit-delegation Privilege Escalation: AI Agent Suspicious Token Generation Using Implicit Delegation | Security... Learn more about 'Privilege Escalation: AI Agent Suspicious Token Generation Using Implicit Delegation' threat findings. privilege escalationai agenttoken generationsuspicious https://advisories.gitlab.com/golang/github.com/forceu/gokapi/CVE-2026-30943/ Gokapi vulnerable to Privilege Escalation in File Replace | GitLab Advisory Database (GLAD) CVE-2026-30943 Gokapi vulnerable to Privilege Escalation in File Replace: An insufficient authorization check in the file replace API allows a user with only... privilege escalation https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20190306-nxos-privesca Cisco NX-OS Software Privilege Escalation Vulnerability A vulnerability in the user account management interface of Cisco NX-OS Software could allow an authenticated, local attacker to gain elevated privileges on an... privilege escalationcisconxossoftware https://advisories.gitlab.com/composer/statamic/cms/CVE-2026-27196/ Statamic affected by privilege escalation via stored cross-site scripting | GitLab Advisory... CVE-2026-27196 Statamic affected by privilege escalation via stored cross-site scripting: Stored XSS vulnerability in html fieldtypes allow authenticated users... cross site scriptingprivilege escalation https://lwn.net/Articles/637024/ libxfont: privilege escalation [LWN.net] privilege escalationlwn https://docs.cloud.google.com/security-command-center/docs/findings/threats/ai-agent-suspicious-token-generation-cross-project-access-token Privilege Escalation: AI Agent Suspicious Cross-Project Access Token Generation | Security Command... Learn more about 'Privilege Escalation: AI Agent Suspicious Cross-Project Access Token Generation' threat findings. privilege escalationai agentcross project https://advisories.gitlab.com/npm/generator-jhipster/CVE-2025-43712/ Withdrawn Advisory: JHipster allows privilege escalation via a modified authorities parameter |... CVE-2025-43712 Withdrawn Advisory: JHipster allows privilege escalation via a modified authorities parameter: Withdrawn Advisory This advisory has been... privilege escalationwithdrawnadvisoryjhipsterallows https://advisories.gitlab.com/maven/org.keycloak/keycloak-services/CVE-2025-7784/ Keycloak Privilege Escalation Vulnerability in Admin Console (FGAPv2 Enabled) | GitLab Advisory... CVE-2025-7784 Keycloak Privilege Escalation Vulnerability in Admin Console (FGAPv2 Enabled): A Privilege Escalation vulnerability was identified in the... privilege escalationadmin consolekeycloakvulnerability https://github.com/marshallford/default-allow-privilege-escalation GitHub - marshallford/default-allow-privilege-escalation: Kubernetes Mutating Webhook for... Kubernetes Mutating Webhook for Defaulting AllowPrivilegeEscalation - marshallford/default-allow-privilege-escalation privilege escalationgithubdefaultallowkubernetes https://advisories.gitlab.com/golang/github.com/hashicorp/nomad/CVE-2023-1299/ Nomad Job Submitter Privilege Escalation Using Workload Identity | GitLab Advisory Database (GLAD) CVE-2023-1299 Nomad Job Submitter Privilege Escalation Using Workload Identity: HashiCorp Nomad and Nomad Enterprise 1.5.0 allow a job submitter to escalate to... privilege escalation https://discuss.kubernetes.io/t/security-advisory-cve-2020-8559-privilege-escalation-from-compromised-node-to-cluster/11873 [Security Advisory] CVE-2020-8559: Privilege escalation from compromised node to cluster -... Jul 15, 2020 - Hello Kubernetes Community, A security issue was discovered in the kube-apiserver that could enable a privilege escalation from a compromised node. This issue... security advisoryprivilege escalation https://advisories.gitlab.com/golang/github.com/grafana/grafana/CVE-2022-36062/ Grafana folders admin only permission privilege escalation | GitLab Advisory Database (GLAD) CVE-2022-36062 Grafana folders admin only permission privilege escalation: On August 29 we have received a bug report for Grafana role-based access control... admin onlyprivilege escalationgrafanafolderspermission https://funky-slipper-44f.notion.site/Privilege-Escalation-using-XSS-d98e8f4a738146e5bf6aefe4c51c33f7 Privilege Escalation using XSS | Notion CSRF Bypass in Rails Application: privilege escalationusingxssnotion https://advisories.gitlab.com/golang/github.com/aws/aws-advanced-go-wrapper/aws-secrets-manager/GHSA-7wq2-32h4-9hc9/ AWS Advanced Go Wrapper: Privilege Escalation in Aurora PostgreSQL Instance | GitLab Advisory... GHSA-7wq2-32h4-9hc9 AWS Advanced Go Wrapper: Privilege Escalation in Aurora PostgreSQL Instance: Description of Vulnerability: An issue in AWS Wrappers for... advanced goprivilege escalation https://advisories.gitlab.com/composer/typo3/cms-core/GHSA-45wj-jv2h-jwrf/ TYPO3 CMS Privilege Escalation and SQL Injection | GitLab Advisory Database (GLAD) GHSA-45wj-jv2h-jwrf TYPO3 CMS Privilege Escalation and SQL Injection: Failing to properly dissociate system related configuration from user generated... privilege escalationsql injectioncms https://advisories.gitlab.com/pypi/apache-airflow/CVE-2023-42792/ Apache Airflow vulnerable to privilege escalation | GitLab Advisory Database (GLAD) CVE-2023-42792 Apache Airflow vulnerable to privilege escalation: Apache Airflow, in versions prior to 2.7.2, contains a security vulnerability that allows an... apache airflowprivilege escalationvulnerablegitlabadvisory https://www.redhat.com/en/blog/understanding-critical-kubernetes-privilege-escalation-flaw-openshift-3 Understanding the critical Kubernetes privilege escalation flaw in OpenShift 3 A critical security vulnerability in Kubernetes (CVE-2018-1002105) affecting OpenShift Container Platform 3 was patched by Red Hat in December 2018. The... privilege escalationunderstandingcriticalkubernetesflaw https://thehackernews.com/2016/12/linux-kernel-local-root-exploit.html?m=1 5-Year-Old Linux Kernel Local Privilege Escalation Flaw Discovered A serious privilege-escalation vulnerability has been discovered in Linux kernel year oldlinux kernelprivilege escalationlocalflaw https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-privesc-bF8D5U4W Cisco IOS XR Software CLI Privilege Escalation Vulnerabilities Multiple vulnerabilities in Cisco IOS XR Software could allow an authenticated, local attacker to execute commands as root on an underlying operating system or... cisco iosprivilege escalationxrsoftwarecli https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/4WD5RJ3L26XFIKFURTV6N5DEPY7Y74XT/ [ASA-201902-6] runc: privilege escalation - Arch-security - lists.archlinux.org privilege escalationsecurity listsasarunc https://lwn.net/Articles/517689/ munin: privilege escalation [LWN.net] privilege escalationmuninlwn https://lwn.net/Articles/165722/ rssh: privilege escalation [LWN.net] privilege escalationlwn https://advisories.gitlab.com/golang/github.com/arduino/arduino-create-agent/CVE-2023-43802/ Arduino Create Agent path traversal - local privilege escalation vulnerability | GitLab Advisory... CVE-2023-43802 Arduino Create Agent path traversal - local privilege escalation vulnerability: Arduino Create Agent is a package to help manage Arduino... arduino createpath traversalprivilege escalationagent https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sdwan-privesc-vman-tEJFpBSL Cisco SD-WAN vManage Software Privilege Escalation Vulnerability A vulnerability in the CLI of Cisco SD-WAN vManage Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying... cisco sd wanprivilege escalationsoftwarevulnerability https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-confd-priv-esc-LsGtCRx4?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=ConfD%20CLI%20Secure%20Shell%20Server%20Privilege%20Escalation%20Vulnerability&vs_k=1 ConfD CLI Secure Shell Server Privilege Escalation Vulnerability A vulnerability in ConfD could allow an authenticated, local attacker to execute arbitrary commands at the level of the account under which ConfD is running,... secure shellprivilege escalationcliservervulnerability https://lwn.net/Articles/165833/ scponly: privilege escalation [LWN.net] privilege escalationlwn https://advisories.gitlab.com/composer/craftcms/cms/CVE-2026-25497/ Craft CMS: GraphQL Asset Mutation Privilege Escalation | GitLab Advisory Database (GLAD) CVE-2026-25497 Craft CMS: GraphQL Asset Mutation Privilege Escalation: Type: Privilege Escalation (CWE-269) Affected: Craft CMS 5.x (likely affects 4.x and 3.x... craft cmsprivilege escalationgraphqlassetmutation https://advisories.gitlab.com/maven/org.opennms/opennms-webapp-rest/CVE-2023-40315/ OpenNMS privilege escalation vulnerability | GitLab Advisory Database (GLAD) CVE-2023-40315 OpenNMS privilege escalation vulnerability: In OpenNMS Horizon 31.0.8 and versions earlier than 32.0.2 and related Meridian versions, any user... privilege escalationopennmsvulnerabilitygitlabadvisory https://advisories.gitlab.com/npm/openclaw/CVE-2026-35639/ OpenClaw Gateway: RCE and Privilege Escalation from operator.pairing to operator.admin via... CVE-2026-35639 OpenClaw Gateway: RCE and Privilege Escalation from operator.pairing to operator.admin via device.pair.approve: device.pair.approve allowed an... privilege escalation https://www.coursera.org/learn/packt-the-complete-pentesting-and-privilege-escalation-course-pouet The Complete Pentesting and Privilege Escalation Course | Coursera Offered by Packt. Updated in May 2025. This course now features Coursera Coach! A smarter way to learn with interactive, real-time ... Enroll for free. the completeprivilege escalationpentestingcourse https://advisories.gitlab.com/golang/github.com/kubernetes-csi/csi-proxy/CVE-2023-3893/ Kubernetes csi-proxy vulnerable to privilege escalation due to improper input validation | GitLab... CVE-2023-3893 Kubernetes csi-proxy vulnerable to privilege escalation due to improper input validation: Kubernetes is vulnerable to privilege escalation when a... privilege escalation https://grafana.com/security/security-advisories/cve-2022-24812/ Privilege Escalation in API Keys in Grafana | Grafana Labs Grafana is an open-source platform for monitoring and observability. When fine-grained access control is enabled and a client uses Grafana API Key to make... privilege escalationapi keysgrafanalabs https://security.paloaltonetworks.com/CVE-2024-5907 CVE-2024-5907 Cortex XDR Agent: Local Privilege Escalation (PE) Vulnerability Jun 12, 2024 - Palo Alto Networks Security Advisory: CVE-2024-5907 Cortex XDR Agent: Local Privilege Escalation (PE) Vulnerability A privilege escalation (PE) vulnerability... cortex xdragent localprivilege escalationcve https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/6LPWYVWPBO6MAQDORONQI3EFTTHZVCON/ [ASA-202106-24] polkit: privilege escalation - Arch-security - lists.archlinux.org privilege escalationsecurity listsasapolkit https://mailman.mit.edu/pipermail/krbdev/2006-August/004899.html MITKRB-SA-2006-001: multiple local privilege escalation vulnerabilities privilege escalationsamultiplelocalvulnerabilities https://xapax.github.io/security/attacking_active_directory_domain/domain_privilege_escalation_checklist/ Domain Privilege Escalation Checklist - Notes privilege escalationdomainchecklistnotes https://advisories.gitlab.com/golang/github.com/kubean-io/kubean/CVE-2024-41820/ Kubean vulnerable to cluster-level privilege escalation | GitLab Advisory Database (GLAD) CVE-2024-41820 Kubean vulnerable to cluster-level privilege escalation: This ClusterRole has * verbs of * resources. If a malicious user can access the worker... privilege escalationvulnerableclusterlevel https://advisories.gitlab.com/golang/github.com/aws/aws-advanced-go-wrapper/mysql-driver/GHSA-7wq2-32h4-9hc9/ AWS Advanced Go Wrapper: Privilege Escalation in Aurora PostgreSQL Instance | GitLab Advisory... GHSA-7wq2-32h4-9hc9 AWS Advanced Go Wrapper: Privilege Escalation in Aurora PostgreSQL Instance: Description of Vulnerability: An issue in AWS Wrappers for... advanced goprivilege escalation https://patchstack.com/database/wordpress/plugin/ultimate-elementor/vulnerability/wordpress-ultimate-addons-for-elementor-plugin-1-36-20-privilege-escalation-vulnerability Privilege Escalation in WordPress Ultimate Addons for Elementor Plugin - Patchstack Patchstack is the leading open source vulnerability research organization. Find information and protection for all WordPress, Drupal and Joomla security issues. ultimate addons for elementorprivilege escalationwordpresspluginpatchstack https://docs.cloud.google.com/security-command-center/docs/findings/threats/cloud-run-abuse-sudo-for-privilege-escalation Privilege Escalation: Abuse of Sudo For Privilege Escalation (CVE-2019-14287) | Security Command... Learn more about 'Privilege Escalation: Abuse of Sudo For Privilege Escalation (CVE-2019-14287)' threat findings. privilege escalationabusesudo https://gist.github.com/ykoster/94c1e192944a42b4ace0e906d01bdeb2 PulseAudio local race condition privilege escalation vulnerability - proof of concept... PulseAudio local race condition privilege escalation vulnerability - proof of concept... local raceprivilege escalationpulseaudioconditionvulnerability https://vuxml.freebsd.org/freebsd/177a7146-4307-11f1-a627-b42e991fc52e.html VuXML: Mozilla -- Privilege escalation in the Debugger component privilege escalationin thevuxmlmozilladebugger https://www.cisco.com/c/en/us/support/docs/csa/cisco-sa-bw-priv-esc-qTgUZOsQ.html Cisco BroadWorks Privilege Escalation Vulnerability - Cisco A vulnerability in the privilege management functionality of all Cisco BroadWorks server types could allow an authenticated, local attacker to elevate... cisco broadworksprivilege escalationvulnerability https://thehackernews.com/2025/06/cisa-warns-of-active-exploitation-of.html CISA Warns of Active Exploitation of Linux Kernel Privilege Escalation Vulnerability CISA warns CVE-2023-0386 is being actively exploited, impacting Linux systems via OverlayFS. Patching is urgent. linux kernelprivilege escalationcisawarnsactive https://www.proofpoint.com/us/blog/identity-threat-defense/privilege-escalation-attack Privilege Escalation Attacks: Techniques & Examples | Proofpoint US Jan 6, 2026 - Understand privilege escalation attack techniques and the risks they pose. Learn how to prevent privilege escalation, view examples and more with Proofpoint. privilege escalationattackstechniquesexamplesproofpoint https://obscuresecurity.blogspot.com/2011/11/old-privilege-escalation-techniques.html obscuresec: Old Privilege Escalation Techniques One of my pet-peeves when it comes to "ethical hacker" training is that it is normally outdated and irrelevant. Teaching students how to us... privilege escalationoldtechniques https://www.sophos.com/en-us/security-advisories/sophos-sa-20200416-sav-macos-lpe Sophos Anti-Virus for macOS privilege escalation (CVE-2020-10947) | Sophos We Deliver Superior Cybersecurity Outcomes for Real-World Organizations Worldwide with a Broad Portfolio of Advanced Security Products and Services. anti virusfor macosprivilege escalationsophoscve https://advisories.gitlab.com/pypi/weblate/CVE-2026-34393/ Weblate: Privilege escalation in the user API endpoint | GitLab Advisory Database (GLAD) CVE-2026-34393 Weblate: Privilege escalation in the user API endpoint: The user patching API endpoint didn't properly limit the scope of edits. privilege escalationin theuser api https://thehackernews.com/2014/06/linux-kernel-vulnerable-to-privilege_7.html Linux Kernel Vulnerable to Privilege Escalation and DoS Attack Linux Kernel Vulnerable to Privilege Escalation CVE-2014-3153 and Denial of Service (DoS) attack. linux kernelprivilege escalationvulnerabledosattack https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-iosxr-LJtNFjeN Cisco IOS XR Software Authenticated User Privilege Escalation Vulnerability A vulnerability in task group assignment for a specific CLI command in Cisco IOS XR Software could allow an authenticated, local CLI shell user to elevate... cisco iosprivilege escalationxrsoftwareauthenticated https://advisories.gitlab.com/maven/org.apache.kafka/kafka-clients/CVE-2024-31141/ Apache Kafka Clients: Privilege escalation to filesystem read-access via automatic ConfigProvider |... CVE-2024-31141 Apache Kafka Clients: Privilege escalation to filesystem read-access via automatic ConfigProvider: Files or Directories Accessible to External... apache kafkaprivilege escalation https://thehackernews.com/2018/10/privilege-escalation-linux.html?version=meter+at+null New Privilege Escalation Flaw Affects Most Linux Distributions A new highly critical privilege escalation flaw discovered in X.Org Server package that impacts OpenBSD and most Linux distributions privilege escalationnewflawaffectslinux https://advisories.gitlab.com/pypi/vng-api-common/GMS-2024-212/ commonground-api-common unexploitable privilege escalation in JWT authentication middleware |... GMS-2024-212 commonground-api-common unexploitable privilege escalation in JWT authentication middleware: Impact This is a privilege escalation vulnerability.... privilege escalationjwt authenticationcommongroundapimiddleware https://advisories.gitlab.com/golang/github.com/rancher/rancher/CVE-2023-22647/ Rancher vulnerable to Privilege Escalation via manipulation of Secrets | GitLab Advisory Database... CVE-2023-22647 Rancher vulnerable to Privilege Escalation via manipulation of Secrets: A vulnerability has been identified which enables Standard users or... privilege escalation https://lists.archlinux.org/archives/list/arch-security@lists.archlinux.org/thread/DCVU6MXOS5S33N222VUF3MLELK34DWV6/?sort=thread [arch-security] [ASA-201612-6] linux: privilege escalation - Arch-security - lists.archlinux.org privilege escalationarchsecurityasa https://ubuntu.com/blog/udisks-libblockdev-lpe-vulnerability-fixes-available?ref=thestack.technology Fixes available for local privilege escalation vulnerability in libblockdev using udisks | Ubuntu Qualys discovered two vulnerabilities in various Linux distributions which allow local attackers to escalate privileges. The first vulnerability... available forprivilege escalation https://advisories.gitlab.com/cargo/vaultwarden/CVE-2026-27802/ Vaultwarden has Privilege Escalation via Bulk Permission Update to Unauthorized Collections by... CVE-2026-27802 Vaultwarden has Privilege Escalation via Bulk Permission Update to Unauthorized Collections by Manager: A Manager account (access_all=false) was... privilege escalation https://forum.directadmin.com/threads/kvm-privilege-escalation-cve-2026-23401.82208/ KVM privilege escalation CVE-2026-23401 | DirectAdmin Forums another one is coming (KVM privilege escalation) ... https://access.redhat.com/security/cve/cve-2026-23401 (no update for RHEL 9 nor 10 yet) privilege escalationkvmcvedirectadminforums https://docs.cloud.google.com/security-command-center/docs/findings/threats/anomalous-sa-delegation-impersonator-admin-activity Privilege Escalation: Anomalous Service Account Impersonator for Admin Activity | Security Command... Learn more about 'Privilege Escalation: Anomalous Service Account Impersonator for Admin Activity' threat findings. privilege escalationservice accountfor adminanomalous https://advisories.gitlab.com/golang/github.com/beego/beego/v2/CVE-2024-40464/ Beego privilege escalation vulnerability | GitLab Advisory Database (GLAD) CVE-2024-40464 Beego privilege escalation vulnerability: An issue in beego v.2.2.0 and before allows a remote attacker to escalate privileges via the sendMail... privilege escalationbeegovulnerabilitygitlabadvisory https://0x90909090.blogspot.com/2017/04/privilege-escalation-with-sudo-nmap.html Le journal d'un reverser: Privilege escalation with a sudo nmap 1/ Intro Do you miss the good old days where nmap got an --interactive option? This option was mostly used to gain root privileges in the ... le journalprivilege escalationunreverser https://www.forrester.com/blogs/cyberark-acquires-viewfinity-underscores-endpoint-privilege-escalations-importance-in-privileged-identity-and-access-management/ CyberArk acquires ViewFinity underscores endpoint privilege escalation's importance in privileged... Jul 10, 2017 - Today's acquistion of ViewFinity (an endpoint privilege escalation vendor) by CyberArk signals an important taxonomy shift in Priivileged Identity / Access... privilege escalationcyberarkacquiresviewfinityunderscores https://advisories.gitlab.com/golang/github.com/projectcalico/calico/CVE-2024-33522/ Calico privilege escalation vulnerability | GitLab Advisory Database (GLAD) CVE-2024-33522 Calico privilege escalation vulnerability: In vulnerable versions of Calico (v3.27.2 and below), Calico Enterprise (v3.19.0-1, v3.18.1, v3.17.3... privilege escalationcalicovulnerabilitygitlabadvisory https://xapax.github.io/security/post_exploitation/privilege_escalation_-_linux/ Local Privilege Escalation - Linux - Notes privilege escalationlocallinuxnotes https://advisories.gitlab.com/npm/directus/CVE-2025-24353/ Directus allows privilege escalation using Share feature | GitLab Advisory Database (GLAD) CVE-2025-24353 Directus allows privilege escalation using Share feature: When sharing an item, user can specify an arbitrary role. It allows user to use a... privilege escalationdirectusallowsusing https://advisories.gitlab.com/maven/com.liferay.portal/release.portal.bom/CVE-2022-45320/ Privilege escalation in Liferay Portal | GitLab Advisory Database (GLAD) CVE-2022-45320 Privilege escalation in Liferay Portal: Liferay Portal before 7.4.3.16 and Liferay DXP before 7.2 fix pack 19, 7.3 before update 6, and 7.4... privilege escalationliferay portalgitlabadvisorydatabase https://thehackernews.com/2022/02/new-linux-privilege-escalation-flaw.html New Linux Privilege Escalation Flaw Uncovered in Snap Package Manager New Linux vulnerabilities in Canonical's Snap for software packaging system can be exploited to gain root privileges. privilege escalationsnap packagenewlinuxflaw https://advisories.gitlab.com/pypi/litellm/CVE-2026-35029/ LiteLLM: Privilege escalation via unrestricted proxy configuration endpoint | GitLab Advisory... CVE-2026-35029 LiteLLM: Privilege escalation via unrestricted proxy configuration endpoint: The /config/update endpoint does not enforce admin role... privilege escalationproxy configurationlitellmviaunrestricted https://advisories.gitlab.com/composer/silverstripe/framework/GHSA-xpff-c35g-j3cr/ silverstripe/framework Privilege Escalation Risk in Member Edit form | GitLab Advisory Database... GHSA-xpff-c35g-j3cr silverstripe/framework Privilege Escalation Risk in Member Edit form: A member with the permission EDIT_PERMISSIONS and access to the... privilege escalation https://deals.newatlas.com/sales/the-complete-pentesting-privilege-escalation-course The Complete Pentesting & Privilege Escalation Course | New Atlas Deals the completeprivilege escalationnew atlaspentestingcourse https://security.archlinux.org/ASA-201703-6 [ASA-201703-6] linux-lts: privilege escalation - Arch Linux privilege escalationasalinuxltsarch https://ciso.economictimes.indiatimes.com/tag/privilege+escalation Privilege escalation - Latest privilege escalation , Information & Updates - IT Security -ET CISO ETCISO.in brings latest privilege escalation news, views and updates from all top sources for the Indian IT Security industry. privilege escalationlatest informationit securityupdateset https://docs.cloud.google.com/security-command-center/docs/findings/threats/external-member-added-to-privileged-group Privilege Escalation: External Member Added To Privileged Group | Security Command Center | Google... Learn more about 'Privilege Escalation: External Member Added To Privileged Group' threat findings. security command centerprivilege escalation https://advisories.gitlab.com/pypi/vng-api-common-utrecht/GMS-2024-213/ commonground-api-common unexploitable privilege escalation in JWT authentication middleware |... GMS-2024-213 commonground-api-common unexploitable privilege escalation in JWT authentication middleware: Impact This is a privilege escalation vulnerability.... privilege escalationjwt authenticationcommongroundapimiddleware https://www.ibm.com/support/pages/security-bulletin-ibm-tririga-application-platform-privilege-escalation-cve-2017-1171 Security Bulletin: IBM TRIRIGA Application Platform Privilege Escalation (CVE-2017-1171) Applications running in the IBM TRIRIGA Application Platform are vulnerable to a privilege escalation attack. security bulletinibm tririgaapplication platformprivilege escalation https://advisories.gitlab.com/composer/winter/wn-backend-module/CVE-2026-27591/ Winter vulnerable to privilege escalation by authenticated backend users | GitLab Advisory Database... CVE-2026-27591 Winter vulnerable to privilege escalation by authenticated backend users: Affected versions of Winter CMS allowed authenticated backend users to... privilege escalation https://advisories.gitlab.com/npm/openclaw/GHSA-fqw4-mph7-2vr8/ OpenClaw: Silent privilege escalation via gateway shared-auth reconnect | GitLab Advisory Database... GHSA-fqw4-mph7-2vr8 OpenClaw: Silent privilege escalation via gateway shared-auth reconnect: Gateway local shared-auth reconnect silently widens paired device... privilege escalation https://advisories.gitlab.com/maven/org.keycloak/keycloak-services/CVE-2026-4282/ Keycloak: Privilege escalation via forged authorization codes due to SingleUseObjectProvider... CVE-2026-4282 Keycloak: Privilege escalation via forged authorization codes due to SingleUseObjectProvider isolation flaw: A flaw was found in Keycloak. The... privilege escalationdue tokeycloakviaforged https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sudo-privesc-jan2021-qnYQfcM Sudo Privilege Escalation Vulnerability Affecting Cisco Products: January 2021 A vulnerability in the command line parameter parsing code of Sudo could allow an authenticated, local attacker to execute commands or binaries with root... privilege escalationcisco productssudovulnerabilityaffecting https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ucsm-afwae-mOgUfyLn Cisco UCS Manager Software Privilege Escalation Vulnerability A vulnerability in the NX-OS CLI privilege levels of Cisco UCS Manager Software could allow an authenticated, local attacker with read-only privileges to... cisco ucsmanager softwareprivilege escalationvulnerability https://advisories.gitlab.com/golang/open-cluster-management.io/ocm/CVE-2026-4740/ Open Cluster Management (OCM): Cross-cluster privilege escalation via improper Kubernetes client... CVE-2026-4740 Open Cluster Management (OCM): Cross-cluster privilege escalation via improper Kubernetes client certificate renewal validation: A flaw was found... open clusterprivilege escalationmanagementocmcross https://docs-cortex.paloaltonetworks.com/r/Cortex-XSIAM/Cortex-XSIAM-Analytics-Alert-Reference-by-Alert-name/Possible-Privilege-Escalation-using-Delegated-MSA-account?contentId=w5M6XeoWI9wx8kVyZ_cqVQ Possible Privilege Escalation using Delegated MSA account Synopsis Activation Period 14 Days Training Period 30 Days Test Period 1 Hour Deduplication Period 1 Day Required Data Requires one of the following data... privilege escalationpossibleusingdelegatedmsa