CVE-2026-42516General

LOWCVSS 7.1 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

This vulnerability exists in e-Sushrut due to improper authorization checks during resource access. An authenticated attacker could exploit this vulnerability by manipulating encoded parameters in the request URL to gain unauthorized access to patient accounts on the targeted system.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-639

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Threat summary

  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 2 signals
  • General: 2 classified signals
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 2 mentions (2026-04-29); latest day: 1
  • 3 total mentions across 2 days

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-04-29: 2Mentions · 2026-04-30: 1Technical Details · 2026-04-29: 204-2904-30
Signal classification2 categories
General
266.7%
Disclosure
133.3%
Referenced assets4 URLs
Classification over time
DateTotalLabels
2026-04-292
Disclosure1General1
2026-04-301
General1
Full discourse3 posts
  • CVEarity@CVEarity
    General

    ⚡ New CVE Alert: CVE-2026-42516 📊 Severity: 7.1 🚨 Risk Level: High 🧩 Affects: Multiple / Unspecified Products Reference: https://nvd.nist.gov/vuln/detail/CVE-2026-42516 #CVE-2026-42516 #CVE #High #CyberSecurity #InfoSec https://t.co/aA64Kp4njE

    Post summary

    The tweet announces the existence of CVE-2026-42516 and indicates its severity level, but provides no additional technical or exploit information.

    0000043
    143 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-42516 This vulnerability exists in e-Sushrut due to improper authorization checks during resource access. An authenticated attacker could exploit this vulnerability by mani… https://www.cve.org/CVERecord?id=CVE-2026-42516

    Post summary

    The post details a new CVE involving improper authorization in e‑Sushrut, noting that authenticated users could exploit resource access, but it offers no PoC, exploit code, or patch information.

    00000117
    57.3K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-42516 Unauthorized Patient Account Access in e-Sushrut via Parameter Ma... https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-42516 Vulnerability Alert Subscriptions: https://alerts.vulmon.com/?utm_source=twitter&utm_medium=social&utm_campaign=2102281&utm_content=1

    Post summary

    The post briefly references CVE-2026-42516, noting unauthorized patient account access in e‑Sushrut with a link to a vulnerability details page, but it does not provide a PoC, exploit, patch, or evidence of active exploitation.

    0000050
    4.0K followersView on X

Explore more