CommServe contained an allowlist bypass vulnerability affecting command execution authorization. Software customers upgrade to resolved maintenance release. Update all Commvault installations, including Commserve, Webserver, Command Center, Media Agents, Clients and HyperScale X.
References
| Link | Resource |
|---|---|
| https://documentation.commvault.com/securityadvisories/CV_2026_07_8.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-08-11 12:17
Updated : 2026-09-09 15:54
NVD link : CVE-2026-13737
Mitre link : CVE-2026-13737
CVE.ORG link : CVE-2026-13737
JSON object : View
Products Affected
commvault
- commvault
CWE
CWE-863
Incorrect Authorization
