What is CVE-2026-19360?
A remote improper privilege management vulnerability exists in the ExcelLexBotS3TriggerFunction within the Lambda Function Handler of wongcyrus ExcelLexBot up to version 0.0.3. Users should immediately update to the latest version or apply any patches provided by the vendor to mitigate potential exploitation.
Azərbaycanca: wongcyrus ExcelLexBot-un 0.0.3-ə qədər versiyalarında, Lambda Function Handler komponentində yerləşən ExcelLexBotS3TriggerFunction funksiyasında düzgün olmayan imtiyaz idarəetməsi (improper privilege management) zəifliyi aşkarlanıb. Bu boşluq uzaqdan hücum etməyə imkan verir; təsirlənən istifadəçilərə dərhal son versiyaya yeniləmə və ya vendor tərəfindən təqdim edilən yamağı tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-269
FAQ2
Which versions of wongcyrus ExcelLexBot are affected by CVE-2026-19360?
This vulnerability affects wongcyrus ExcelLexBot up to version 0.0.3.
What action is recommended to mitigate CVE-2026-19360?
Users should immediately update to the latest version or apply any patches provided by the vendor to mitigate potential exploitation.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.