CyberRota Analysis
AI-GeneratedAll versions of Zammad, including the latest alpha release, are vulnerable to a local privilege escalation flaw that allows a user with zammad access to gain root privileges. This critical vulnerability poses significant risks to system integrity and confidentiality, making it imperative for organizations using Zammad to prioritize immediate remediation. System administrators and security teams should act swiftly to mitigate potential exploitation.
CVE
CVE-2026-102490
Severity
CRITICAL
CVSS
9.8
EPSS
0.26%
Original NVD Description
All versions of Zammad including the latest alpha enable the local zammad user to escalate privileges to root.
Related CVEs
Other vulnerabilities affecting the same vendor(s)