CRITICAL 9.3 NVD

CVE-2026-77089

Command Center API contained an authentication bypass issue affecting privilege management. Software customers upgrade to resolved maintenance release. Update C

Command Center API contained an authentication bypass issue affecting privilege management. Software customers upgrade to resolved maintenance release. Update Command Center.

Affected Products

References

Published: 2026-09-08 · Source: NVD · Feed updated: 2026-09-11
This critical severity vulnerability with a CVSS score of 9.3 was published on 2026-09-08 via NVD. Affected: commvault/commvault.

Risk Timeline

CVE Disclosed2026-09-08 · 2 days ago

Remediation Resources

Related Vulnerabilities

CVETitleSeverityCVSS
CVE-2026-77097Private Metrics Server contained a missing authentication condition affecting meHIGH8.8
CVE-2026-77098Private Metrics Server contained an SQL injection condition affecting database oHIGH8.8
CVE-2026-77101CommServe contained a stack-based buffer overflow issue affecting service availaHIGH8.7
CVE-2026-77102CommServe contained a heap-based buffer overflow issue affecting service availabHIGH8.7
CVE-2026-77103CommServe contained an authentication bypass issue affecting access authorizatioHIGH8.7
CVE-2026-77105CommServe contained a cryptographic signature verification issue affecting priviHIGH8.7
vulnfeed aggregates 13138 vulnerabilities from NVD, CISA KEV, Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.