Capgo是CAPGO公司的一个专为CapacitorJS开发者打造的移动应用开发和更新平台。 Capgo 12.128.2之前版本存在信息泄露漏洞,该漏洞源于函数get_identity_apikey_only存在未经验证的安全定义RPC,可能导致攻击者确认API密钥有效性、将密钥映射到用户标识符,进而检索组织成员身份和管理邮件PII。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-56239 | 7.6 HIGH | Capgo - Privilege Escalation via SECURITY DEFINER Function apply_usage_overage |
| CVE-2026-56253 | 7.5 HIGH | Capgo - Unauthenticated Organization Member Email Disclosure via get_org_members RPC |
| CVE-2026-56229 | 6.5 MEDIUM | Capgo - Cross-App Build Job Access via app_id/job_id Mismatch in /build/status and /build/ |
| CVE-2026-56251 | 6.5 MEDIUM | Capgo - Privilege Escalation via Broken Row Level Security in org_users |
| CVE-2026-56236 | 6.1 MEDIUM | Capgo CLI - Arbitrary File Overwrite via Symlink-Following in Local Credential Operations |
| CVE-2026-56299 | 5.3 MEDIUM | Capgo - Denial of Service via Unauthenticated OPTIONS Request to /build/upload Endpoint |
No comments yet