CVE-2026-19072
9.9 CRITICALPublished 2026-09-24 · Updated 2026-09-25
AI risk analysis
- Summary
- This flaw allows an 'investigator' user to set arbitrary VQL statements, potentially elevating their privileges to administrator level.
- Exploitability
- Exploitation requires an 'investigator' role and access to the API, making it moderately exploitable.
- Blast radius
- If exploited, this can lead to full server compromise and arbitrary code execution with administrator privileges.
- Detection
- No reliable host or network indicator is derivable from the published description.
- Prioritized remediation
- Disable the ability to set 'compiled_collector_args' via the API or restrict this action to higher privileged users.
Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.
NVD description
Velociraptor stores the compiled VQL in the hunt object internally to avoid having to recompile the artifacts for each endpoint in the hunt. Although the field "compiled_collector_args" is an internal field, Velociraptor allowed the field to be set from a user API call. This allows another user who can schedule a hunt (minimal role of "investigator" ) to set the compiled VQL statements for the hunt bypassing any ACL checks that would normally be applied. This flaw can then be escalated to allow the "investigator" user to run arbitrary VQL statements as an administrator user on the Velociraptor server.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Weaknesses
CWE-164, CWE-1269
All references
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- HIGHCVE-2026-18900PoC
- CRITICALCVE-2026-20305
- CRITICALCVE-2026-20306
- CRITICALCVE-2017-20241
- CRITICALCVE-2017-20242
- CRITICALCVE-2023-54399
- CRITICALCVE-2023-54400PoC
- HIGHCVE-2025-1281
Related by shared AI tags and CWE weakness class. Browse the full archive.