SEPTEMBER 22, 2026
Live Feed
Back to database
Case File

CVE-2026-45254

MEDIUM · CVSS 6.5 EPSS 0.19%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2026-05-21 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 6.5. See the original NVD description below for full technical details.

CVE
CVE-2026-45254
Severity
MEDIUM
CVSS
6.5
EPSS
0.19%

Original NVD Description

In the case of the cap_net service, when a key present in the old limit was omitted from the new limit, the missing key was treated as "allow any" instead of being rejected. In certain scenarios, an application that had previously restricted a subset of network operations could ask for a new limit that extended the permissions of the process.

Related CVEs

Other vulnerabilities affecting the same vendor(s)