CVE-2026-12556
Last modified
CVE-2026-12556 is a high-severity vulnerability rated 7.7/10 on the CVSS scale. Potential security vulnerabilities have been identified in HP Easy Start for macOS, versions prior to 2.16.7.260722. These potential vulnerabilities may lead to escalation of privilege. EPSS estimates a 0.15% chance of exploitation in the next 30 days.
Description
Potential security vulnerabilities have been identified in HP Easy Start for macOS, versions prior to 2.16.7.260722. These potential vulnerabilities may lead to escalation of privilege. HP is releasing updates to mitigate these potential vulnerabilities.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| HP Inc | HP Easy Start for macOS | < <2.16.7.260722 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-12556?
How severe is CVE-2026-12556?
How do I fix CVE-2026-12556?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-12548A heap out-of-bounds read flaw was found in libsoup. When pa…4.2
- CVE-2026-12549The fix for CVE-2026-2443 was regressed by a subsequent rewo…4.8
- CVE-2026-1255The YS LeadGen plugin for WordPress is vulnerable to Sensiti…7.5
- CVE-2026-12553HP has identified a potential vulnerability in HP Web Jetadm…8.9
- CVE-2026-12554Potential security vulnerabilities have been identified in H…8.5
- CVE-2026-12555Potential security vulnerabilities have been identified in H…7.7
- CVE-2026-12557The Ninja Forms - File Uploads plugin for WordPress is vulne…5.3
- CVE-2026-12559A Stored Cross-Site Scripting (XSS) vulnerability has been i…7.3
- CVE-2026-1256The YS LeadGen plugin for WordPress is vulnerable to authori…6.4
- CVE-2026-12560The Editorial Rating – Product Review & Rating System plugin…4.4
- CVE-2026-12561The tagDiv Composer plugin for WordPress is vulnerable to St…6.4
- CVE-2026-12562The RCU II+ and Multiload II+ are vulnerable to an unauthent…8.8
Are you affected by CVE-2026-12556?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
