An authorization bypass (CWE-639) in the GetUserRoles gRPC API endpoint in Velocidex Velociraptor below version 0.76.5 allows any authenticated low-privilege user to retrieve the complete ACL policy (roles and permissions) for any user across all organizations by supplying targeted Name and Org parameters via a network request.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Wed, 06 May 2026 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authorization bypass (CWE-639) in the GetUserRoles gRPC API endpoint in Velocidex Velociraptor below version 0.76.5 allows any authenticated low-privilege user to retrieve the complete ACL policy (roles and permissions) for any user across all organizations by supplying targeted Name and Org parameters via a network request. | |
| Title | GetUserRoles API endpoint allows any authenticated user to enumerate ACL policies across all organizations | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: rapid7
Published:
Updated: 2026-05-06T02:15:34.491Z
Reserved: 2026-05-01T00:05:56.823Z
Link: CVE-2026-7573
No data.
Status : Received
Published: 2026-05-06T03:15:59.440
Modified: 2026-05-06T03:15:59.440
Link: CVE-2026-7573
No data.
OpenCVE Enrichment
No data.
Weaknesses