
CVE-2026-12878 In affected versions of the Codefresh platform an authenticated user can utilize an API endpoint to elevate to Admin permissions. https://www.cve.org/CVERecord?id=CVE-2026-12878
Post summary
The post notes a privilege‑escalation vulnerability (CVE‑2026‑12878) where authenticated users can elevate to admin via an API endpoint; it does not mention a PoC, exploit, patch, or active exploitation.

