AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-19360

MEDIUM · CVSS 4.7 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-08-09 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

A vulnerability in the ExcelLexBot's Lambda Function Handler allows for improper privilege management, which can be exploited remotely. This issue affects versions up to 0.0.3 and is particularly relevant for organizations still using unsupported products. Users of these affected versions should prioritize remediation to mitigate potential security risks.

CVE
CVE-2026-19360
Severity
MEDIUM
CVSS
4.7
EPSS
0.22%

Original NVD Description

A vulnerability was detected in wongcyrus ExcelLexBot up to 0.0.3. This affects the function ExcelLexBotS3TriggerFunction of the component Lambda Function Handler. Performing a manipulation results in improper privilege management. The attack may be initiated remotely. The vendor was contacted early about this disclosure but did not respond in any way. This vulnerability only affects products that are no longer supported by the maintainer.