Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 31 Aug 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 31 Aug 2026 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Moghtech
Moghtech komodo |
|
| Vendors & Products |
Moghtech
Moghtech komodo |
Fri, 28 Aug 2026 19:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Komodo through 2.3.2 discloses internal resource identifiers and writes audit entries before performing permission checks in the /execute and /execute/{variant} handlers. Authenticated users can guess resource names to obtain internal identifiers and insert fraudulent audit log entries misrepresenting privileged operations. | |
| Title | Komodo Resource Identifier Disclosure and Audit Log Pollution Before Permission Check | |
| Weaknesses | CWE-862 | |
| References |
|
|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-08-31T18:55:11.444Z
Reserved: 2026-08-28T11:12:37.404Z
Link: CVE-2026-82267
Updated: 2026-08-31T16:23:34.420Z
Status : Received
Published: 2026-08-28T20:20:17.363
Modified: 2026-08-31T19:17:16.963
Link: CVE-2026-82267
No data.
OpenCVE Enrichment
Updated: 2026-08-31T11:20:40Z
