What is CVE-2026-59690?
This is a Missing Authorization vulnerability allowing an authenticated, low-privilege attacker to perform privileged administrative operations via the REST API. It affects Progress Software's load balancing and security solutions, including LoadMaster and MOVEit WAF. Immediate patching with the vendor's security update is recommended.
Azərbaycanca: Bu boşluq autentifikasiya olunmuş, lakin aşağı səlahiyyətli hücumçunun REST API üzərindən admin əməliyyatları icra etməsinə imkan verən 'Missing Authorization' zəifliyidir. Progress Software şirkətinin LoadMaster, MOVEit WAF və digər yük balanslaşdırıcı həllərini təsirləyir. Dərhal təchizatçı tərəfindən təqdim olunan təhlükəsizlik yeniləməsini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-862
FAQ2
Which products are affected by CVE-2026-59690?
This vulnerability affects Progress Software's load balancing and security solutions, including LoadMaster, MOVEit WAF, and other related products.
What should be done to protect against CVE-2026-59690?
Immediate patching with the security update provided by the vendor Progress Software is recommended.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.