Capgo是CAPGO公司的一个专为CapacitorJS开发者打造的移动应用开发和更新平台。 Capgo 12.128.2之前版本存在处理逻辑错误漏洞,该漏洞源于仅在用户界面层面执行强制双因素身份验证,敏感组织管理API端点未在后端验证双因素身份验证完成情况,可能导致已身份验证但未启用双因素身份验证的管理员用户重放或修改先前捕获的API请求来执行特权组织操作,绕过全局强制双因素身份验证要求。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2026-56237 | 9.1 CRITICAL | Capgo - Unauthenticated API Key Generation via Client-Side Parameter Manipulation |
| CVE-2026-56232 | 8.8 HIGH | Capgo - Subkey Scope Bypass in middlewareKey via x-limited-key-id Header |
| CVE-2026-56223 | 8.7 HIGH | Capgo - Account Takeover via Cross-Domain SSO Email Assertion in provision-user |
| CVE-2026-56231 | 7.6 HIGH | Capgo - Broken Object Level Authorization in Build Job Control via jobId Parameter |
| CVE-2026-56244 | 7.1 HIGH | Capgo - Webhook Signing Secret Disclosure via Non-Admin API Key |
| CVE-2026-56257 | 7.1 HIGH | Capgo - Authorization Bypass in App Ownership Transfer via Direct PostgREST Update |
| CVE-2026-56302 | 6.5 MEDIUM | Capgo - Unsecured Supabase Images Bucket via Missing Row Level Security |
| CVE-2026-56337 | 5.3 MEDIUM | Capgo - Information Disclosure via Unauthenticated RPC Function exist_app_v2 |
| CVE-2026-56338 | 5.3 MEDIUM | Capgo - Denial of Service in 2FA Email Verification via /auth/v1/otp Endpoint |
No comments yet