CVE-2026-101086

HIGH CVSS 4.0: 7.1 EPSS 0.32%
Updated Sep 29, 2026
Nezhahq
Parameter Value
CVSS 7.1 (HIGH)
Affected Versions before 2.3.5
Type CWE-269 (Improper Privilege Management)
Vendor Nezhahq
Public PoC No

Nezha Dashboard versions before 2.3.5 fail to restrict service monitor task types to supported probe types, allowing authenticated users with nezha:service:write scope to submit privileged task types through the service API. Attackers can deliver command execution or Agent configuration tasks to Agents within their authorization scope by exploiting the shared protobuf Task.Type namespace between service monitors and privileged operations.

Attack Parameters

Attack Vector
Network
Can be exploited remotely
Attack Complexity
Low
Easy to exploit
Attack Requirements
None
No additional conditions
Privileges Required
Low
Basic privileges needed
User Interaction
None
No user interaction needed

Impact Assessment

Confidentiality
High
Complete data leak
Integrity
None
No data modification
Availability
None
No disruption

CVSS Vector v4.0

Vulnerable Products

nezhahq:nezha