Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1325 CNY

100%

CVE-2026-56216— Capgo - Scope Escalation via API Key Creation in /functions/v1/apikey

CVSS 8.8 · High

Possible ATT&CK Techniques 1AI

T1098.004 · SSH Authorized Keys
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-56216

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Capgo - Scope Escalation via API Key Creation in /functions/v1/apikey
Source: NVD (National Vulnerability Database)
Vulnerability Description
Capgo before 12.128.2 contains a scope escalation vulnerability in the POST /functions/v1/apikey endpoint that allows app-limited API keys to mint unrestricted keys by setting empty limits. Attackers with a compromised app-limited key can create an unrestricted key with org-wide access to resources like app listings and other protected endpoints.
Source: NVD (National Vulnerability Database)
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Source: NVD (National Vulnerability Database)
Vulnerability Type
特权管理不恰当
Source: NVD (National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
CapgoCapgo 0 ~ 12.128.2 -

II. Public POCs for CVE-2026-56216

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-56216

登录查看更多情报信息。

Vendor Advisories for CVE-2026-56216 (2)

Same Patch Batch · Capgo · 2026-06-20 · 5 CVEs total

CVE-2026-562158.3 HIGHCapgo - Account Merge via Poisoned public.users.email in SSO Provisioning
CVE-2026-562147.5 HIGHCapgo - Unauthenticated Organization Enumeration and Billing Status Disclosure via Supabas
CVE-2026-562135.3 MEDIUMCapgo - Unauthenticated Cross-Tenant Metrics Poisoning via upsert_version_meta RPC
CVE-2026-562123.8 LOWCapgo - Improper 2FA Enforcement Logic via Team Security Settings

IV. Related Vulnerabilities

V. Comments for CVE-2026-56216

No comments yet


Leave a comment