Junglewise Threat Intelligence

CVE-2026-27802: Vaultwarden has Privilege Escalation via Bulk Permission Update to Unauthorized Collections by Manager

CVE-2026-27802 · Severity: low · CVSS 3.1 · Published 2026-03-04

Technologies: vaultwarden (crates.io). Vendors: crates.io.

Executive brief

Vaultwarden has Privilege Escalation via Bulk Permission Update to Unauthorized Collections by Manager

Affected products

  • crates.io vaultwarden

Related threats