
CVE-2026-64954 (CVSS 8.2): Velociraptor notebook VQL queries bypass COLLECT_CLIENT permission checks. Review notebook access if deployed. via NVD Recent High CVSS #CyberSecurity #InfoSec #Vulnerability https://t.co/IIfa5QXbuD
Post summary
The tweet announces CVE‑2026‑64954, a high‑scoring vulnerability in Velociraptor that allows notebook VQL queries to bypass COLLECT_CLIENT permission checks; no PoC, exploit code, or patch is mentioned, but users are advised to review notebook access.
