Incorrect access control in the impworks Bonsai v6.0 allows authenticated attackers with Editor privileges to escalate privileges to Administrator and execute unauthorized account, password, and configuration changes.
References
Configurations
No configuration.
History
16 Jun 2026, 19:17
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://gist.github.com/pyuysig/68754e4c40161ea27fcf80be46c59e7c - | |
| CWE | CWE-284 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 8.1 |
15 Jun 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-06-15 20:16
Updated : 2026-06-17 10:57
NVD link : CVE-2026-50881
Mitre link : CVE-2026-50881
CVE.ORG link : CVE-2026-50881
JSON object : View
Products Affected
No product.
CWE
CWE-284
Improper Access Control
