CVE-2026-26416

An authorization bypass vulnerability in Tata Consultancy Services Cognix Recon Client v3.0 allows authenticated users to escalate privileges across role boundaries via crafted requests.
Configurations

Configuration 1 (hide)

cpe:2.3:a:tcs:cognix_platform:3.0:*:*:*:*:*:*:*

History

10 Mar 2026, 19:00

Type Values Removed Values Added
References () https://github.com/aksalsalimi/CVE-2026-26416 - () https://github.com/aksalsalimi/CVE-2026-26416 - Third Party Advisory
References () https://github.com/aksalsalimi/cognix-recon-client-security-advisories - () https://github.com/aksalsalimi/cognix-recon-client-security-advisories - Third Party Advisory
References () https://www.tcs.com/what-we-do/services/cognitive-business-operations/solution/cognix-platform-business-agility-enhanced-cx - () https://www.tcs.com/what-we-do/services/cognitive-business-operations/solution/cognix-platform-business-agility-enhanced-cx - Product
Summary
  • (es) Una vulnerabilidad de omisión de autorización en Tata Consultancy Services Cognix Recon Client v3.0 permite a usuarios autenticados escalar privilegios a través de los límites de roles mediante solicitudes manipuladas.
First Time Tcs cognix Platform
Tcs
CPE cpe:2.3:a:tcs:cognix_platform:3.0:*:*:*:*:*:*:*

06 Mar 2026, 10:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
CWE CWE-269

05 Mar 2026, 19:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-05 19:16

Updated : 2026-03-10 19:00


NVD link : CVE-2026-26416

Mitre link : CVE-2026-26416

CVE.ORG link : CVE-2026-26416


JSON object : View

Products Affected

tcs

  • cognix_platform
CWE
CWE-269

Improper Privilege Management