CWE-276 - Incorrect Default Permissions is a cwe tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.
CWE-276 - Incorrect Default Permissions is a cwe tracked across 1 threat cluster and 1 intelligence report mention on ThreatCluster. First observed July 27, 2026; most recent activity July 27, 2026.
CVE-2026-17497 is a high-severity remote code execution vulnerability affecting NoteGen versions prior to 0.32.0. The flaw arises from an overly permissive Tauri shell plugin configuration that allows JavaScript in the…
CWE-276 - Incorrect Default Permissions is a cwe tracked by ThreatCluster, appearing in 1 threat cluster built from 1 intelligence report mention.
The most recent intelligence report mentioning CWE-276 - Incorrect Default Permissions on ThreatCluster is dated July 27, 2026.
Across ThreatCluster reporting, CWE-276 - Incorrect Default Permissions most frequently co-occurs with Zero-day Exploit, CVE-2026-17497, CWE-78 - OS Command Injection, T1059.004 - Unix Shell, T1059.006 - Python, among 6 tracked related entities.
The most significant recent cluster is “Critical Remote Code Execution Vulnerability in NoteGen (CVE-2026-17497)” (2 articles · Updated July 27, 2026). CWE-276 - Incorrect Default Permissions appears across 1 threat cluster in total, listed above with sources.
CWE-276 - Incorrect Default Permissions appears in 1 intelligence report mention across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.