Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-13059

An authenticated user with low privileges may be able to perform unauthorized reads and writes on data protected by role-based query-level access controls, due to insufficient validation of certain client-supplied command parameters. The issue affects find, update, delete, and aggregate commands in non-apiStrict configurations.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 19.9%
CVSS Severity
CVSS v3 Score 8.1
Products affected by CVE-2026-13059


Contact Us

Shodan ® - All rights reserved