CVE-2026-13738

CommServe contained an authorization bypass vulnerability affecting a limited set of command execution operations. Software customers upgrade to resolved maintenance release. Update all Commvault installations, including Commserve, Webserver, Command Center, Media Agents, Clients and HyperScale X.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:commvault:commvault:*:*:*:*:*:*:*:*
cpe:2.3:a:commvault:commvault:*:*:*:*:*:*:*:*
cpe:2.3:a:commvault:commvault:*:*:*:*:*:*:*:*
cpe:2.3:a:commvault:commvault:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-08-11 12:17

Updated : 2026-09-11 14:25


NVD link : CVE-2026-13738

Mitre link : CVE-2026-13738

CVE.ORG link : CVE-2026-13738


JSON object : View

Products Affected

commvault

  • commvault
CWE
CWE-863

Incorrect Authorization