Description
Velociraptor allows scheduling new collections via VQL queries in notebooks. For a user to schedule a new collection, they require the COLLECT_CLIENT permission. However, this is not enforced when the user can run a VQL query which resets the authorization provider.

This allows a user who can run arbitrary VQL (usually with the "analyst" role) to launch new collections (usually requires the "investigator" role). This vulnerability is an escalation from an analyst to investigator role.
Published: 2026-08-12
Score: 8.2 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Velociraptor allows users to schedule new collections through VQL in notebooks. The system requires the COLLECT_CLIENT permission, but this check is bypassed when a user runs a VQL query that resets the authorization provider. Consequently, an analyst who can execute arbitrary VQL can start collections that normally require the investigator role, effectively gaining elevated privileges. The weakness is classified as unverified access control, CWE-862.

Affected Systems

The affected product is Rapid7 Velociraptor. All current releases are vulnerable until the vendor releases a fix; no specific versions are presently listed in the advisory.

Risk and Exploitability

The CVSS score of 8.2 indicates a high severity vulnerability. EPSS data is not available, and the vulnerability is not currently listed in CISA KEV. The likely attack vector involves an analyst with VQL execution rights resetting the authorization provider and launching new collections. This bypass does not require additional network access or external exploitation agents, so the risk to systems where such roles exist is considerable.

Generated by OpenCVE AI on August 12, 2026 at 13:51 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Velociraptor to the latest version that removes the ability to reset the authorization provider via VQL.
  • Configure role-based access controls so that analysts cannot execute arbitrary VQL; restrict VQL execution to read-only or limited query sets.
  • Enable logging and alerting for collection scheduling actions and review activity from analyst accounts regularly.

Generated by OpenCVE AI on August 12, 2026 at 13:51 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 12 Aug 2026 05:00:00 +0000

Type Values Removed Values Added
Description Velociraptor allows scheduling new collections via VQL queries in notebooks. For a user to schedule a new collection, they require the COLLECT_CLIENT permission. However, this is not enforced when the user can run a VQL query which resets the authorization provider. This allows a user who can run arbitrary VQL (usually with the "analyst" role) to launch new collections (usually requires the "investigator" role). This vulnerability is an escalation from an analyst to investigator role.
Title Velociraptor collect_client() Permissions Bypass
Weaknesses CWE-862
References
Metrics cvssV3_1

{'score': 8.2, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: rapid7

Published:

Updated: 2026-08-12T04:26:32.169Z

Reserved: 2026-07-21T08:32:47.510Z

Link: CVE-2026-64954

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-12T05:19:17.893

Modified: 2026-08-12T05:19:17.893

Link: CVE-2026-64954

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-12T14:00:03Z

Weaknesses