SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-76137

LOW · CVSS 3.3 EPSS 0.11%

Source: NVD + CISA KEV + EPSS · Published 2026-08-21 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

A vulnerability in VOCALOID6 allows any process operating under the same local user account as an active VOCALOID6 Editor instance to escalate privileges through a local named pipe due to missing authentication for critical functions. While the severity is rated low, this issue could be exploited by local attackers to gain unauthorized access to system resources. Users and administrators of VOCALOID6 should prioritize this vulnerability to mitigate potential risks associated with local privilege escalation.

CVE
CVE-2026-76137
Severity
LOW
CVSS
3.3
EPSS
0.11%

Original NVD Description

Missing authentication for critical function vulnerability exists in VOCALOID6. Any process running under the same local user account as a running VOCALOID6 Editor instance may escalate privileges via a local named pipe.