Description
Velociraptor allows scheduling new collections via VQL queries in notebooks. For a user to schedule a new collection, they require the COLLECT_CLIENT permission. However, this is not enforced when the user can run a VQL query which resets the authorization provider.

This allows a user who can run arbitrary VQL (usually with the "analyst" role) to launch new collections (usually requires the "investigator" role). This vulnerability is an escalation from an analyst to investigator role.
Published: 2026-08-12
Score: 8.2 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Velociraptor allows users to schedule new collections through VQL in notebooks. The system requires the COLLECT_CLIENT permission, but this check is bypassed when a user runs a VQL query that resets the authorization provider. Consequently, an analyst who can execute arbitrary VQL can start collections that normally require the investigator role, effectively gaining elevated privileges. The weakness is classified as unverified access control, CWE-862.

Affected Systems

The affected product is Rapid7 Velociraptor. All current releases are vulnerable until the vendor releases a fix; no specific versions are presently listed in the advisory.

Risk and Exploitability

The CVSS score of 8.2 indicates a high severity vulnerability. EPSS data is not available, and the vulnerability is not currently listed in CISA KEV. The likely attack vector involves an analyst with VQL execution rights resetting the authorization provider and launching new collections. This bypass does not require additional network access or external exploitation agents, so the risk to systems where such roles exist is considerable.

Generated by OpenCVE AI on August 12, 2026 at 13:51 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade Velociraptor to the latest version that removes the ability to reset the authorization provider via VQL.
  • Configure role-based access controls so that analysts cannot execute arbitrary VQL; restrict VQL execution to read-only or limited query sets.
  • Enable logging and alerting for collection scheduling actions and review activity from analyst accounts regularly.

Generated by OpenCVE AI on August 12, 2026 at 13:51 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 13 Aug 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 12 Aug 2026 17:15:00 +0000

Type Values Removed Values Added
First Time appeared Rapid7
Rapid7 velociraptor
Vendors & Products Rapid7
Rapid7 velociraptor

Wed, 12 Aug 2026 05:00:00 +0000

Type Values Removed Values Added
Description Velociraptor allows scheduling new collections via VQL queries in notebooks. For a user to schedule a new collection, they require the COLLECT_CLIENT permission. However, this is not enforced when the user can run a VQL query which resets the authorization provider. This allows a user who can run arbitrary VQL (usually with the "analyst" role) to launch new collections (usually requires the "investigator" role). This vulnerability is an escalation from an analyst to investigator role.
Title Velociraptor collect_client() Permissions Bypass
Weaknesses CWE-862
References
Metrics cvssV3_1

{'score': 8.2, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:N'}


Subscriptions

Rapid7 Velociraptor
cve-icon MITRE

Status: PUBLISHED

Assigner: rapid7

Published:

Updated: 2026-08-13T15:10:57.773Z

Reserved: 2026-07-21T08:32:47.510Z

Link: CVE-2026-64954

cve-icon Vulnrichment

Updated: 2026-08-13T15:10:51.665Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-08-12T05:19:17.893

Modified: 2026-08-28T21:17:10.720

Link: CVE-2026-64954

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-12T17:00:06Z

Weaknesses