
CVE-2026-44987 SysReptor is a fully customizable pentest reporting platform. Prior to version 2026.29, users with "User Admin" permissions can change the email addresses of users wi… https://www.cve.org/CVERecord?id=CVE-2026-44987
Post summary
The entry announces CVE-2026-44987, describing a privilege‑escalation flaw in SysReptor where User Admin role can alter user email addresses before version 2026.29, but provides no PoC, exploit, or mitigation info.

