AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2026-25704

UNKNOWN · CVSS N/A EPSS 0.09%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-03-30 · Last synced 2026-08-04

CyberRota Analysis

This vulnerability has an unknown severity rating. It affects GitHub.

CVE
CVE-2026-25704
Severity
UNKNOWN
CVSS
N/A
EPSS
0.09%
GitHub

Original NVD Description

A Privilege Dropping / Lowering Errors/Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability inĀ  cosmic-greeter can allow an attacker to regain privileges that should have been dropped and abuse them in the racy checking logic. This issue affects cosmic-greeter before https://github.Com/pop-os/cosmic-greeter/pull/426.