Capgo是CAPGO公司的一个专为CapacitorJS开发者打造的移动应用开发和更新平台。 Capgo 12.128.2之前版本存在授权问题漏洞,该漏洞源于角色绑定删除期间org_users.user_right列未清除,导致被降级的super_admin用户仍保留对delete_non_compliant_bundles和count_non_compliant_bundles RPC的访问权限,可能导致权限提升。攻击者可利用此前授予的super_admin角色在整个组织中枚举和批量删除不合规的捆绑包
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-56313 | 8.1 HIGH | Capgo - Cross-Organization Account Disruption via SSO Prelink Endpoint |
| CVE-2026-56238 | 7.5 HIGH | Capgo - Unauthenticated Information Disclosure via PostgREST global_stats Endpoint |
| CVE-2026-56308 | 7.3 HIGH | Capgo - Insufficient Authentication in Email Change Endpoint |
| CVE-2026-56252 | 5.4 MEDIUM | Capgo - Scope Isolation Failure in Webhook Test Endpoint |
| CVE-2026-56336 | 5.3 MEDIUM | Capgo - Information Disclosure via Unauthenticated SSO check-domain Endpoint |
| CVE-2026-56281 | 3.8 LOW | Capgo - SQL Injection via Unvalidated limit Parameter in Admin Stats Endpoint |
No comments yet