MEDIUMVulnerability

CVE-2026-65938

In WhatsUp Gold versions released before 2026.0.2, an improper authorization vulnerability in the Scheduled Reports API allows any authenticated user to invoke restricted actions.

Properties

severity
MEDIUM
score
4.3
cve_id
CVE-2026-65938
vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
published_at
2026-08-12T16:17:13.667
last_modified
2026-09-02T18:26:11.987

Related Entities (4)

AFFECTS_PRODUCT (1)

[Product]

DESCRIBED_BY (1)

[Source]NVD

HAS_WEAKNESS (2)

[Weakness]Missing Authorization
[Weakness]Client-Side Enforcement of Server-Side Security

Explore deeper with Ninja Signal's threat intelligence graph

CVE-2026-65938 — Ninja Signal Threat Intelligence | Ninja Signal