CVE-2026-50881
the affected product
Incorrect access control in the impworks Bonsai v6.0 allows authenticated attackers with Editor privileges to escalate privileges to Administrator and execute unauthorized account, password, and configuration changes.
- CVSS
- 8.1
- EPSS
- 0.25% 16.2% percentile
- CISA KEV
- Not listed
- Published
- 2026.06.16