CVE-2026-103470Critical· 9.3▾ MidnightIn Internet2 Grouper before 7.5.1 (in some configurations), a user who is allowed to create or edit rules in the User Interface can escalate privileges.
▾ Midnight zone — Critical, or high with PoC / in-the-wild
impact 51.2 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
In Internet2 Grouper before 7.5.1 (in some configurations), a user who is allowed to create or edit rules in the User Interface can escalate privileges.
Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
Connected by shared product, vendor, weakness, or advisory.
CVE-2026-94178High· 7.5Subscriber Privilege Escalation in Import and export users and customers <= 2.5.2 versions.
CVE-2026-96350Critical· 9.8Subscriber Privilege Escalation in Estatik <= 4.3.5 versions.
CVE-2026-96815High· 7.2Custom role Privilege Escalation in Vitepos <= 3.5.0 versions.
CVE-2026-96821Medium· 6.3Subscriber Privilege Escalation in FluentBoards <= 2.0.12 versions.
CVE-2026-97245High· 7.2Shop Worker Privilege Escalation in SureCart <= 4.7.2 versions.
CVE-2026-102846Medium· 4.7A vulnerability was detected in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8