CVE-2026-19550High· 8.2▾ TwilightA flaw was found in FreeIPA. The trust-fetch-domains command is gated by a read-only permission on the trust object rather than a trust-administration permission, allowing an authenticated, non-privileged IPA user to trigger a privileged…
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 45.1 · likelihood 0 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Stakeholder-Specific Vulnerability Categorization from CISA's ADP record at CVE.org: whether exploitation is observed, whether an attack can be automated, and how much of the system is at stake.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.2%
A flaw was found in FreeIPA. The trust-fetch-domains command is gated by a read-only permission on the trust object rather than a trust-administration permission, allowing an authenticated, non-privileged IPA user to trigger a privileged Active Directory trust refresh using an attacker-supplied server and credentials, resulting in unauthorized, attacker-controlled modification of trusted-domain and ID-range identity data in the IPA LDAP directory.
enterprise_linux = 7.0enterprise_linux = 8.0enterprise_linux = 9.0enterprise_linux = 10.0freeipa < 4.13.3Upgrade past the affected range:
freeipa 4.13.3Connected by shared product, vendor, weakness, or advisory.
CVE-2026-73197High· 7.5A flaw was found in FreeIPA
CVE-2026-11861Critical· 9.6A flaw was found in FreeIPA
CVE-2026-73198High· 7.5A flaw was found in FreeIPA
CVE-2026-13097High· 8.7A privilege escalation flaw was found in FreeIPA
CVE-2026-19816High· 7.1A flaw was found in PackageKit
CVE-2026-18255High· 7.2A flaw was found in Quay