High severity7.2OSV Advisory· Published Dec 21, 2018· Updated Jun 17, 2026
CVE-2018-20226
CVE-2018-20226
Description
An organization administrator can add a super administrator in THEHIVE PROJECT Cortex before 2.1.3 due to the lack of overriding the Role.toString method.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
31.0.0+ 2 more
- (no CPE)range: 1.0.0
- (no CPE)range: <2.1.3
- cpe:2.3:a:thehive-project:cortex:*:*:*:*:*:*:*:*range: <2.1.3
Patches
Vulnerability mechanics
References
3- github.com/TheHive-Project/Cortex/commit/1aaf2182a6b722ad539e2717bc11967d1bde723anvdPatchThird Party Advisory
- github.com/TheHive-Project/Cortex/issues/158nvdIssue TrackingPatchThird Party Advisory
- github.com/TheHive-Project/Cortex/blob/2.1.3/CHANGELOG.mdnvdThird Party Advisory
News mentions
0No linked articles in our index yet.