OCTOBER 10, 2026
Live Feed
Back to database
Case File

CVE-2026-68490

HIGH · CVSS 8.2 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-09-23 · Last synced 2026-10-10

CyberRota Analysis

AI-Generated

A vulnerability exists due to incorrect permission assignments that enable local users to access sensitive CalDAV and CardDAV information from other accounts. This poses a significant risk of data exposure and privacy breaches. Organizations managing systems that utilize CalDAV/CardDAV protocols should prioritize addressing this issue to protect user data.

CVE
CVE-2026-68490
Severity
HIGH
CVSS
8.2
EPSS
0.14%

Original NVD Description

Incorrect permission assignment allows local users to obtain sensitive CalDAV/CardDAV information belonging to other accounts.