What is CVE-2026-55163?
CVE-2026-55163 affects Lemur, a TLS certificate management tool. Prior to version 1.9.2, a flaw in the PUT /api/1/roles/ endpoint allowed any existing member of a role to update its details due to incorrect permission checks. Users should upgrade to version 1.9.2 or later immediately.
Azərbaycanca: CVE-2026-55163 Lemur TLS sertifikat idarəetmə sistemində aşkarlanıb. 1.9.2 versiyasından əvvəl PUT /api/1/roles/ sorğusunda rol icazələrinin yanlış yoxlanılması, rol üzvü olan istənilən şəxsə rol məlumatlarını yeniləməyə imkan verirdi. İstifadəçilər dərhal Lemur-u ən son versiyaya yeniləməlidir.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
Which product does CVE-2026-55163 affect?
CVE-2026-55163 affects the Lemur TLS certificate management tool.
Which version of Lemur fixes CVE-2026-55163?
Version 1.9.2 and later fix this vulnerability, and users should upgrade immediately.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.