No advisories yet.
Solution
Upgrade Cribl Edge to v4.17.1 or higher. Upgrading fully resolves this vulnerability and no additional mitigation is required.
Workaround
No workaround given by the vendor.
Tue, 02 Jun 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Reserved. Details will be published at disclosure. | A vulnerability chain in Cribl Edge for Windows before 4.17.1 allows a local authenticated user to escalate privileges to NT AUTHORITY\SYSTEM. Incorrect default permissions on the Windows installer's authentication directory (CWE-276) expose a cryptographic secret used for JWT signing and password-hash derivation, enabling forgery of administrative API tokens. The forged token can then be used to invoke a pipeline function that reaches an OS command sink (CWE-78) running in the SYSTEM context. |
| Title | Local privilege escalation to SYSTEM in Cribl Edge for Windows | |
| Weaknesses | CWE-276 CWE-78 |
|
| Metrics |
cvssV3_1
|
cvssV4_0
|
Fri, 15 May 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-20 |
Fri, 15 May 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cribl Edge Reserved Vulnerability Awaiting Disclosure |
Fri, 15 May 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Tue, 12 May 2026 09:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cribl
Cribl cribl |
|
| Vendors & Products |
Cribl
Cribl cribl |
Tue, 12 May 2026 03:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Cribl Edge Reserved Vulnerability Awaiting Disclosure |
Tue, 12 May 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Reserved. Details will be published at disclosure. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Cribl
Published:
Updated: 2026-06-02T15:55:07.304Z
Reserved: 2026-05-12T01:05:53.672Z
Link: CVE-2026-45393
Updated: 2026-05-15T10:57:50.789Z
Status : Deferred
Published: 2026-05-12T02:16:13.310
Modified: 2026-06-02T17:16:33.903
Link: CVE-2026-45393
No data.
OpenCVE Enrichment
Updated: 2026-06-02T18:45:06Z