CVE-2026-7765
Last modified
CVE-2026-7765 is a medium-severity vulnerability rated 5.3/10 on the CVSS scale. Incorrect authorization in the User Messages dashboard widget in Checkmk <2.5.0p5 causes the message-fetching endpoints to return the dashboard creator's messages rather than the viewer's, allowing an attacker who knows a valid public dashboard share token to read the issuer's personal messages by sending requests to the underlying endpoint, even without a User Messages widget present.. EPSS estimates a 0.19% chance of exploitation in the next 30 days.
Description
Incorrect authorization in the User Messages dashboard widget in Checkmk <2.5.0p5 causes the message-fetching endpoints to return the dashboard creator's messages rather than the viewer's, allowing an attacker who knows a valid public dashboard share token to read the issuer's personal messages by sending requests to the underlying endpoint, even without a User Messages widget present.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Checkmk | Checkmk | 2.5.0 |
References
- https://checkmk.com/werk/19815Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-7765?
How severe is CVE-2026-7765?
How do I fix CVE-2026-7765?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-77644A critical bypass access control vulnerability has been repo…9.3
- CVE-2026-77645A critical remote code execution (RCE) vulnerability has bee…9.2
- CVE-2026-77646A Server-Side Request Forgery (SSRF) vulnerability has been …7.7
- CVE-2026-77647SPIP before 4.4.20 allows unauthenticated remote attackers t…9.8
- CVE-2026-77648In OpenStack Glance through 32.0.0, the /v2/tasks API accept…2.2
- CVE-2026-77649The internment crate 0.8.7 for Rust can trigger execution of…9.8
- CVE-2026-77650The append-only-vec crate 0.1.9 for Rust can trigger executi…9.8
- CVE-2026-77651The arrayref crate 0.3.10 for Rust can trigger execution of …9.8
- CVE-2026-77652A heap-based buffer overflow vulnerability exists in the Dia…7.8
- CVE-2026-77654Improper Privilege Management vulnerability in Horizon Secur…6.1
- CVE-2026-77658A stack-based buffer overflow vulnerability exists in the Di…7.8
- CVE-2026-7766Kenik Camera management Panel is vulnerable to Path Traversa…8.3
Are you affected by CVE-2026-7765?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
