CVE-2026-92753
EUVD-2026-8102516.09.2026, 21:17
PatrowlManager through 1.8.4 contains an authorization bypass vulnerability in the events and alerts API endpoints that lack ownership filtering. Authenticated attackers can read platform event history, delete arbitrary events, and modify alerts belonging to other users.Enginsight
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| patrowl | patrowlmanager | 𝑥 ≤ 1.8.4 | CNA |
Common Weakness Enumeration