SEPTEMBER 14, 2026
Live Feed
Back to database
Case File

CVE-2026-80462

CRITICAL · CVSS 10 EPSS 0.30%

Source: NVD + CISA KEV + EPSS · Published 2026-09-11 · Last synced 2026-09-14

CyberRota Analysis

AI-Generated

A critical vulnerability in the Chef Automate API gateway allows unauthenticated users to gain elevated access to sensitive functionalities, potentially compromising the integrity and security of the Chef Automate environment. Organizations utilizing Chef Automate should prioritize immediate remediation efforts to mitigate the risk of unauthorized access and potential exploitation.

CVE
CVE-2026-80462
Severity
CRITICAL
CVSS
10
EPSS
0.30%

Original NVD Description

A vulnerability in the Chef Automate API gateway and identity validation path may allow an unauthenticated actor to gain elevated access to protected Chef Automate functionality under specific conditions.