CVE-2026-56782 - Vulnerability Details

Threat entity extracted from intelligence sources

Frequency
2
occurrences
First Seen
June 29, 2026
Last Seen
June 30, 2026

CVE-2026-56782 is a vulnerability tracked across 1 threat cluster and 2 intelligence report mentions on ThreatCluster. First observed June 29, 2026; most recent activity June 30, 2026.

Related Threat Clusters

  • Critical Authentication Bypass Vulnerability in Gorse Exposed

    Gorse versions prior to 0.5.10 contain a critical authentication bypass vulnerability (CVE-2026-56782) in the /api/dump and /api/restore endpoints. This flaw allows unauthenticated attackers to access sensitive data…

    2 articles · Updated June 30, 2026

Recent Intelligence Reports

  • CVE-2026-56782 AKAOMA CVE VULNERABILITIES / 14h Gorse before 0.5.10 contains an authentication bypass vulnerability in the /api/dump and /api/restore endpoints that allows unauthenticated attackers to access protected functionality when admin_api_key is empty, which is the default configuration. Remote attackers can exfiltrate the entire database including user records, items, and feedback data containing personally identifiable information, or completely overwrite the dataset without authentica — cve.akaoma.com · June 30, 2026
  • CVE-2026-56782 - Exploits & Severity — Feedly · June 29, 2026

CVSS v3.1 Breakdown