In affected versions of the Codefresh platform an authenticated user can utilize an API endpoint to elevate to Admin permissions.
References
| Link | Resource |
|---|---|
| https://advisories.codefresh.io/post/2026/sa2026-01/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2026-08-25 10:18
Updated : 2026-09-02 19:09
NVD link : CVE-2026-12878
Mitre link : CVE-2026-12878
CVE.ORG link : CVE-2026-12878
JSON object : View
Products Affected
octopus
- codefresh
microsoft
- windows
linux
- linux_kernel
CWE
CWE-269
Improper Privilege Management
