Description
In affected versions of Octopus Server, users with certain scoped permission sets could execute arbitrary scripts in an environment without possessing the required authorization.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://advisories.octopus.com/post/2026/sa2026-13 |
|
History
Thu, 01 Oct 2026 04:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In affected versions of Octopus Server, users with certain scoped permission sets could execute arbitrary scripts in an environment without possessing the required authorization. | |
| Weaknesses | CWE-863 | |
| References |
| |
| Metrics |
cvssV4_0
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: Octopus
Published:
Updated: 2026-10-01T04:36:23.243Z
Reserved: 2026-08-24T01:59:35.230Z
Link: CVE-2026-78210
No data.
Status : Received
Published: 2026-10-01T05:17:10.117
Modified: 2026-10-01T05:17:10.117
Link: CVE-2026-78210
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-863
Incorrect Authorization