CVE-2026-30269Disclosure(doorman / doorman)

LOWCVSS 9.9 · CRITICAL

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Patch doorman doorman systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Improper access control in Doorman v0.1.0 and v1.0.2 allows any authenticated user to update their own account role to a non-admin privileged role via /platform/user/{username}. The `role` field is accepted by the update model without a manage_users permission check for self-updates, enabling privilege escalation to high-privileged roles.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-269

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • doorman

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 4 classified signals
  • Peaked at 4 mentions on most recent observed day (2026-04-21)
  • 5 total mentions across 2 days

Affected systems

Vendors
Products
doorman

2 versions affected across 1 product

Deep dive

Activity timeline5 mentions / 2d
01234Mentions · 2026-04-20: 1Mentions · 2026-04-21: 4Patch / Workaround · 2026-04-21: 1Technical Details · 2026-04-20: 1Technical Details · 2026-04-21: 304-2004-21
Signal classification2 categories
Disclosure
480.0%
Patch
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-04-201
Disclosure1
2026-04-214
Disclosure3Patch1
Full discourse5 posts
  • CTIWatch@ctiwatchcloud
    Disclosure

    🔍 Today's Top Vulnerabilities 🔴 CVE-2026-41329 | CVSS 9.9 🔴 CVE-2026-30269 | CVSS 9.9 🔴 CVE-2026-32604 | CVSS 9.9 🔗 http://ctiwatch.cloud/vulnerabilities #CVE #Vulnerability #ThreatIntel

    Post summary

    The tweet announces three CVEs with CVSS 9.9 scores, linking only to a general CTI page, with no further technical or exploitation details.

    0001058
    5.6K followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-30269 Improper access control in Doorman v0.1.0 and v1.0.2 allows any authenticated user to update their own account role to a non-admin privileged role via /platform/user/… https://www.cve.org/CVERecord?id=CVE-2026-30269 ----- Traducción: CVE-2026-30269: Fa… http://infoflow.cloud`

    Post summary

    The post cites CVE-2026‑30269 and describes its improper access control issue that allows privilege escalation on Doorman, but offers no PoC, exploit, patch, or evidence of active exploitation.

    0000026
    72 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-30269 Improper access control in Doorman v0.1.0 and v1.0.2 allows any authenticated user to update their own account role to a non-admin privileged role via /platform/user/… https://www.cve.org/CVERecord?id=CVE-2026-30269

    Post summary

    CVE‑2026‑30269 highlights an improper access control flaw in Doorman that lets authenticated users elevate themselves to a privileged role via a specific endpoint; the notice provides technical details but lacks exploitation, patch, or PoC information.

    00000125
    57.2K followersView on X
  • PurpleOps@PurpleOps_io
    Patch

    🚨 Critical CVEs Today: Cloud-native deployments (CVSS 9.8-9.9) Affected: Spinnaker; Doorman; Vvveb; SGLang Internet-facing risks dominate, led by cloud-native deployments and identity/access flaws; fixes and mitigations below. • CVE-2026-32604 (CVSS 9.9) Spinnaker allows remote command execution on clouddriver pods via unauthenticated access; affected versions prior to 2026.1.0, 2026.0.1, 2025.4.2, 2025.3.2. • CVE-2026-32613 (CVSS 9.9) Spinnaker SPeL context allowed full JVM access enabling arbitrary Java class usage to invoke commands and access files; affected versions prior to 2026.1.0, 2026.0.1, 2025.4.2, 2025.3.2. • CVE-2026-30269 (CVSS 9.9) Doorman improper access control allows authenticated users to escalate their own role to non-admin via /platform/user/{username}; affected versions v0.1.0 and v1.0.2. • CVE-2026-39918 (CVSS 9.8) Vvveb installation endpoint vulnerability: the subdir POST parameter is written unsanitized into env.php, enabling unauthenticated remote code execution as the web server user; affected versions prior to 1.0.8.1. • CVE-2026-5760 (CVSS 9.8) SGLang reranking endpoint /v1/rerank enables remote code execution when a model file contains a malicious http://tokenizer.chat_template; affects SGLang prior to 0.5.9. 🛠️ Action - Patch/upgrade to fixed versions called out (Spinnaker 2026.1.0+; Doorman latest; Vvveb 1.0.8.1+; SGLang 0.5.9+). - Prioritize internet-facing instances and edge appliances first. - If mitigation is needed, apply available mitigations and reduce exposure where fixes are not yet deployed. - Add detections for exploitation patterns (unauthenticated RCE attempts, suspicious file-write paths, unexpected process spawns). - Hunt for indicators around affected services during disclosure-to-now window (logs, EDR, WAF). - Validate remediation (version checks, config verification) and monitor for reversion

    Post summary

    The post details several high‑severity CVEs, outlines their technical impact, and emphasizes patching and mitigations for affected cloud‑native deployments.

    0000095
    99 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-30269 Privilege Escalation in Doorman v0.1.0 and v1.0.2 via Improper Access Control https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-30269

    Post summary

    The text announces CVE-2026-30269, describing a privilege escalation in Doorman due to improper access control, with no PoC, exploit, active exploitation, patch, or false positive information provided.

    0000044
    4.0K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appdoormandoorman0.1.0--
Appdoormandoorman1.0.2--

Explore more