rootpwn

critical · CVSS v3 8.8 · CVSS v4 9.3

CVE-2026-103470

In Internet2 Grouper before 7.5.1 (in some configurations), a user who is allowed to create or edit rules in the User In…

Description

In Internet2 Grouper before 7.5.1 (in some configurations), a user who is allowed to create or edit rules in the User Interface can escalate privileges.

Scores

Severity
critical
CVSS v2
7.5
CVSS v3
8.8
CVSS v4
9.3
EPSS
—

← All CVEs