SEPTEMBER 7, 2026
Live Feed
Back to database
Case File

CVE-2026-8593

MEDIUM · CVSS 5.3 EPSS 0.21%

Source: NVD + CISA KEV + EPSS · Published 2026-07-21 · Last synced 2026-08-20

CyberRota Analysis

AI-Generated

Improper permission enforcement in Checkmk versions prior to specified patches allows unauthorized users to view and modify Business Intelligence (BI) packs and rules. This vulnerability poses a significant risk to the integrity of data and configurations within the monitoring environment. Organizations using affected versions should prioritize remediation to prevent potential data breaches and unauthorized access.

CVE
CVE-2026-8593
Severity
MEDIUM
CVSS
5.3
EPSS
0.21%

Original NVD Description

Improper permission enforcement in Checkmk versions 2.5.0 before 2.5.0p9, 2.4.0 before 2.4.0p34, 2.3.0 before 2.3.0p49, and 2.2.0 (EOL) allows users without permissions to view and modify BI packs and rules