What is CVE-2026-63727?
Anchore Enterprise versions 5.11.0 through 5.27.1 and 6.0.0 contain an improper privilege escalation vulnerability in the user management API. An authenticated attacker with API access could exploit this to modify user permissions and gain unauthorized access.
Azərbaycanca: Anchore Enterprise-in 5.11.0 - 5.27.1 və 6.0.0 versiyalarında, autentifikasiya olunmuş API istifadəçisi tərəfindən istifadə edilə bilən improper privilege escalation zəifliyi mövcuddur. Bu API çağırışı vasitəsilə hücumçu öz səlahiyyətlərini artıraraq sistemə icazəsiz giriş əldə edə bilər.
Related CVEs
link basis: same weakness class CWE-269
FAQ2
Which product is affected by CVE-2026-63727?
This vulnerability affects Anchore Enterprise versions 5.11.0 through 5.27.1 and 6.0.0.
What can an attacker achieve by exploiting CVE-2026-63727?
An authenticated attacker with API access can exploit the improper privilege escalation to modify user permissions and gain unauthorized access.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.