CVE-2026-65316
Last modified
CVE-2026-65316 is a high-severity vulnerability rated 7.1/10 on the CVSS scale. XXL-Job version 2.4.2 contains an insecure direct object reference vulnerability that allows authenticated users to read execution log content from job groups they are not authorized to access by supplying arbitrary sequential log IDs to the logDetailCat endpoint. Attackers can enumerate log records across all job groups by calling the logDetailCat endpoint with incremented logId parameter values, bypassing the permission check present in the sibling logDetailPage endpoint, and retrieve sensitive log content from restricted job groups.. EPSS estimates a 0.38% chance of exploitation in the next 30 days.
Description
XXL-Job version 2.4.2 contains an insecure direct object reference vulnerability that allows authenticated users to read execution log content from job groups they are not authorized to access by supplying arbitrary sequential log IDs to the logDetailCat endpoint. Attackers can enumerate log records across all job groups by calling the logDetailCat endpoint with incremented logId parameter values, bypassing the permission check present in the sibling logDetailPage endpoint, and retrieve sensitive log content from restricted job groups.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| xuxueli | xxl-job | <= 2.4.2 |
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-65316?
How severe is CVE-2026-65316?
How do I fix CVE-2026-65316?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-6531SANE protocol dissector infinite loop in Wireshark 4.6.0 to …5.5
- CVE-2026-65310ANDRITZ HIPASE-250 (formerly 250 SCALA), in the default conf…7.5
- CVE-2026-65311The HTTP server component of ANDRITZ HIPASE-250 (formerly 25…5.3
- CVE-2026-65313A provisioning script used when installing HIPASE-250 (forme…8.1
- CVE-2026-65314Electric Postgres Sync versions below 1.6.10 contains an inf…5.3
- CVE-2026-65315Ollama (HEAD f0078ae) contains an uncontrolled memory alloca…8.7
- CVE-2026-65317Verba RAG application version 2.1.3 contains a server-side r…9.2
- CVE-2026-65318Verba RAG application version 2.1.3 contains an unauthentica…9.2
- CVE-2026-65319Feedbin (commit 739884a) contains an unauthenticated informa…8.7
- CVE-2026-6532Kismet protocol dissector crash in Wireshark 4.6.0 to 4.6.4 …5.5
- CVE-2026-65321PyAthena prior to 3.35.4 contains a sql injection vulnerabil…9.8
- CVE-2026-65324Apache Traffic Server drops the per-stream buffer cap when d…8.2
Are you affected by CVE-2026-65316?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
