CVE-2026-86708

LOWCVSS 10.0 · CRITICAL

Signal is active with 4 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

ZohoCorp ManageEngine Applications Manager versions 182200 and below were vulnerable to exposure of a Google Cloud service-account private key in the Applications Manager installer, which could allow an unauthenticated attacker to impersonate the service account and access or modify associated cloud resources.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-321

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 4 mentions across 1 observed day

What's happening

  • 4 total mentions across 1 day

Deep dive

Activity timeline4 mentions / 1d
01234Mentions · 2026-09-24: 409-24
Referenced assets2 URLs
Full discourse4 posts
  • CCB Alert@CCBalert

    Warning: Multiple critical vulnerabilities in #Zoho #ManageEngine Applications Manager, #OpManager & Firewall Analyzer. CVE-2026-86708 CVSS: 10.0, CVE-2026-19599 CVSS: 9.9. These flaws can lead to cloud account takeover and #RCE! #Patch #Patch #Patch https://ccb.belgium.be/advisories/warning-multiple-vulnerabilities-zoho-manageengine-applications-manager-opmanager

    01011295
    7.3K followersView on X
  • ExploitGrid@exploitgrid

    [CVE] CVE-2026-86708 [HIGH PRIORITY] #Sensitive data exposure 🔗 https://exploitgrid.net/cve/CVE-2026-86708

    1000030
    47 followersView on X
  • ExploitGrid@exploitgrid

    🛡️ #ExploitGrid Daily #Threat Digest Top Vulnerabilities (CVEs) of the day CVE-2026-59167 CVE-2026-86708 CVE-2026-96257 CVE-2026-19599 CVE-2026-77602 ..🧵👇

    1000044
    47 followersView on X
  • ExploitGrid@exploitgrid

    🟠 HIGH PRIORITY ├ CVE-2026-59167 — SunEditor · XSS sanitizer bypass ├ CVE-2026-86708 — Sensitive data exposure ├ CVE-2026-96257 — Fast FAC1203R · Stack overflow ├ CVE-2026-19599 — Remote Code Execution └ CVE-2026-77602 — OpenC3 COSMOS · Auth'd RCE via writable config

    1000038
    47 followersView on X

Explore more