CVE-2026-50881

Incorrect access control in the impworks Bonsai v6.0 allows authenticated attackers with Editor privileges to escalate privileges to Administrator and execute unauthorized account, password, and configuration changes.
Configurations

No configuration.

History

16 Jun 2026, 19:17

Type Values Removed Values Added
References () https://gist.github.com/pyuysig/68754e4c40161ea27fcf80be46c59e7c - () https://gist.github.com/pyuysig/68754e4c40161ea27fcf80be46c59e7c -
CWE CWE-284
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.1

15 Jun 2026, 20:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-15 20:16

Updated : 2026-06-17 10:57


NVD link : CVE-2026-50881

Mitre link : CVE-2026-50881

CVE.ORG link : CVE-2026-50881


JSON object : View

Products Affected

No product.

CWE
CWE-284

Improper Access Control